alternativas a

Snyk

Hosted security platform that scans dependencies, container images, code and infrastructure as code for known vulnerabilities. Un producto cerrado de Snyk.

Comparativa

8 alternativas de código abierto a Snyk
HerramientaSustituciónEstrellasLicenciaCondicionesAutoalojableLenguajeÚltima versiónÚltimo push
TrivyParcial38kApache-2.0Código abiertoNoGov0.75.02026-10-06
GrypeParcial13kApache-2.0Código abiertoNoGov0.120.02026-10-05
OSV-ScannerParcial11kApache-2.0Código abiertoNoGov2.6.02026-10-05
ClairParcial11kApache-2.0Código abiertoNoGov4.9.02026-09-30
CheckovParcial9.1kApache-2.0Código abiertoNoPython3.3.232026-10-06
Dependency-CheckParcial7.7kApache-2.0Código abiertoNoJavav13.0.02026-10-05
Dependency-TrackParcial4.3kApache-2.0Código abiertoSíJava5.1.22026-10-06
KICSParcial2.7kApache-2.0Código abiertoNoOpen Policy Agentv2.2.02026-10-06

Todas las alternativas

Lenguaje
Alojamiento

8 alternativas

TrivyParcial

Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositories, clouds and more

Scans dependencies, container images, infrastructure as code and secrets from the CLI or CI; no hosted dashboard or fix pull requests.

Lenguaje
Go
Licencia
Apache-2.0
Estrellas
38k
Última versión
v0.75.0
Último push
2026-10-06
GrypeParcial

A vulnerability scanner for container images and filesystems

Dependency and container image scanning, from an image, a directory or an SBOM; no code or IaC scanning.

Lenguaje
Go
Licencia
Apache-2.0
Estrellas
13k
Última versión
v0.120.0
Último push
2026-10-05
OSV-ScannerParcial

Vulnerability scanner written in Go which uses the data provided by https://osv.dev

Dependency and container image scanning against OSV.dev, with guided remediation for npm and Maven.

Lenguaje
Go
Licencia
Apache-2.0
Estrellas
11k
Última versión
v2.6.0
Último push
2026-10-05
ClairParcial

Vulnerability Static Analysis for Containers

Container image scanning as a service behind a registry; no code or dependency scanning.

Lenguaje
Go
Licencia
Apache-2.0
Estrellas
11k
Última versión
v4.9.0
Último push
2026-09-30
CheckovParcial

Prevent cloud misconfigurations and find vulnerabilities during build-time in infrastructure as code, container images and open source packages with Checkov by Bridgecrew.

Only the infrastructure as code checks, for Terraform, CloudFormation, Kubernetes and more.

Lenguaje
Python
Licencia
Apache-2.0
Estrellas
9.1k
Última versión
3.3.23
Último push
2026-10-06
Dependency-CheckParcial

OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.

Dependency scanning against the NVD, with Maven, Gradle and Ant plugins; no container image scanning.

Lenguaje
Java
Licencia
Apache-2.0
Estrellas
7.7k
Última versión
v13.0.0
Último push
2026-10-05
Dependency-TrackParcial

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

Continuous monitoring of dependencies from SBOMs with policies, without fix pull requests.

Lenguaje
Java
Licencia
Apache-2.0
Estrellas
4.3k
Última versión
5.1.2
Último push
2026-10-06
KICSParcial

Find security vulnerabilities, compliance issues, and infrastructure misconfigurations early in the development cycle of your infrastructure-as-code with KICS by Checkmarx.

Only the infrastructure as code checks, with queries for Terraform, Kubernetes, Docker and more.

Licencia
Apache-2.0
Estrellas
2.7k
Última versión
v2.2.0
Último push
2026-10-06

Cara a cara

Sobre Snyk

Empresa
Snyk

Web de Snyk ↗