We use Xygeni to harden our CI/CD pipelines in Azure DevOps. Our software is mainly in Python, but we also use Javascript and Csharp. Xygeni detects issues on our open-source third-party dependencies and shows them in an easy-to-use dashboard. We also use Xygeni to analyze our code repositories. The scanner analyzes the repository configuration and the code within and detects potential security issues. Finally, it is important for us to secure the DevOps configuration and our deployment pipelines in search of potential vulnerabilities.
Marketing Digital at a computer software company with 11-50 employees
Real User
Top 20
Jul 16, 2026
My main use case for Xygeni is that we offer it to our clients to ensure security in the software supply chain.I don't have much technical information because it's not my area of expertise, but a specific example of how we have implemented this tool for a client is that we can see our clients are happier because their developments are now more secure, it takes less time for the IT team, and they have metrics that are easier to understand for people who are not in the IT area.
I use Xygeni to perform SAST and SCA analysis, and to gain better understanding of how my deployment pipelines are configured. Xygeni helps me understand what I am deploying and the level of integration with production. It also helps me understand how my vulnerabilities are exposed to the internet. Xygeni provides a filtering mechanism that helps me prevent vulnerabilities and keep focus on which vulnerabilities are actually exploitable.
I most often use Xygeni for monitoring our applications. When monitoring our applications, I use Xygeni when I see changes in code flow and codebase, and I compare the old codebase with the current codebase in terms of changes.
Business Development Manager at a security firm with 11-50 employees
Real User
Top 20
Jan 20, 2026
Xygeni is used to monitor and watch the status of applications with regard to information security. For example, there is a project where a previous version of a codebase needs to be compared with the current version, and when libraries are updated, there can be threats and malware. Xygeni can provide information about supply chain security and vulnerabilities with standards of information security. There are some applications, such as basic applications, and within Xygeni's user interface, the status of information security of these applications can be viewed.
Xygeni All-In-One AppSec Platform ensures comprehensive security across the software supply chain, utilizing deep contextual intelligence to prioritize exploitable and business-critical vulnerabilities.With its AI-powered capabilities, Xygeni offers automatic detection and quarantine of malicious code at publication while providing context-aware auto-remediation. It integrates seamlessly across source code, dependencies, secrets, IaC, builds, containers, and CI/CD systems. Unified APPM...
We use Xygeni to harden our CI/CD pipelines in Azure DevOps. Our software is mainly in Python, but we also use Javascript and Csharp. Xygeni detects issues on our open-source third-party dependencies and shows them in an easy-to-use dashboard. We also use Xygeni to analyze our code repositories. The scanner analyzes the repository configuration and the code within and detects potential security issues. Finally, it is important for us to secure the DevOps configuration and our deployment pipelines in search of potential vulnerabilities.
My main use case for Xygeni is that we offer it to our clients to ensure security in the software supply chain.I don't have much technical information because it's not my area of expertise, but a specific example of how we have implemented this tool for a client is that we can see our clients are happier because their developments are now more secure, it takes less time for the IT team, and they have metrics that are easier to understand for people who are not in the IT area.
I use Xygeni to perform SAST and SCA analysis, and to gain better understanding of how my deployment pipelines are configured. Xygeni helps me understand what I am deploying and the level of integration with production. It also helps me understand how my vulnerabilities are exposed to the internet. Xygeni provides a filtering mechanism that helps me prevent vulnerabilities and keep focus on which vulnerabilities are actually exploitable.
I most often use Xygeni for monitoring our applications. When monitoring our applications, I use Xygeni when I see changes in code flow and codebase, and I compare the old codebase with the current codebase in terms of changes.
Xygeni is used to monitor and watch the status of applications with regard to information security. For example, there is a project where a previous version of a codebase needs to be compared with the current version, and when libraries are updated, there can be threats and malware. Xygeni can provide information about supply chain security and vulnerabilities with standards of information security. There are some applications, such as basic applications, and within Xygeni's user interface, the status of information security of these applications can be viewed.