Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

Mend AppSec Platform

Mend.io | 1

Reviews from AWS Marketplace

0 AWS reviews
  • 5 star
    0
  • 4 star
    0
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

105 reviews
from G2

External reviews are not included in the AWS star rating for the product.


    Stef L.

It just works

  • September 06, 2021
  • Review verified by G2

What do you like best about the product?
The WhiteSource Renovate bot is a fantastic product. Setup was effortless, with a friendly guide, in the form of a pull request that shows the impact of your configuration.
I had limited the number of open pull requests, so after a few weeks, we were lagging in releasing all the updates. Then renovate bot opened an issue in our project, clearly showing what was still in the backlog.
What do you dislike about the product?
Finetuning how Renovate bot should process updates has quite a bit of a learning curve.
What problems is the product solving and how is that benefiting you?
Renovate bot is helping us keep up to date with all our external software updates.


    Alex V.

Makes keeping up with updates 1000x easier!

  • September 01, 2021
  • Review provided by G2

What do you like best about the product?
The customization and ability to self-host
What do you dislike about the product?
A bit complicated to set up on Gitlab and occasional bugginess
What problems is the product solving and how is that benefiting you?
Making sure all of our dependencies are up to date across all of our projects.


    Sujith Q.

First steps with renovate and Terraform

  • August 06, 2021
  • Review provided by G2

What do you like best about the product?
It works with a bare minimum of configuration
What do you dislike about the product?
It took me quite a while to find out what that bare minimum was although there is documentation available.
What problems is the product solving and how is that benefiting you?
Find out when you run behind using certain versions of Terraform modules


    Sam B.

Extremely Flexible Dependency Update Manager

  • July 12, 2021
  • Review verified by G2

What do you like best about the product?
They had an option for nearly every configuration I wanted.
What do you dislike about the product?
Renovate really taxes my build system credits since there are so many PRs. There's an option to group PRs, but then if they fail CI I have to figure out which dependency caused the failure manually. Ideally, it would group dependency updates but then do a binary search to find the update that broke the build (Similar to bors for regular PRs, but I can't use bors to solve dependency problems because automerge will always fail due to conflicts in lockfiles)
What problems is the product solving and how is that benefiting you?
Trying to regularly update my dependencies to get ahead of security vulnerabilities and prevent dependency ossification.


    Education Management

Great way to keep up your app updated

  • April 23, 2021
  • Review verified by G2

What do you like best about the product?
Automation of the process, auto merging pull requests, the information provided inside.
What do you dislike about the product?
I haven't found the pin dependencies feature useful, but maybe I need to dig more to fully benefit from it.
What problems is the product solving and how is that benefiting you?
Keeping all app dependencies up to date, without human work.
Recommendations to others considering the product:
I would highly reccomend


    Risto K.

WhiteSource's Renovate works great for me

  • April 19, 2021
  • Review verified by G2

What do you like best about the product?
I've hooked up Renovate initially to some small repos and now to some big ones, and it's worked great. They've learned from other products in this space and have proper configurability and built-in understanding to make dependency management much easier than manual curation. And they have pretty good documentation.
What do you dislike about the product?
The documentation could be easier to find (it's hidden at the bottom of the page), and could have a softer intro to configuration between "here's the single default config" and "here are all the possible options". Also the docs could be easier to break down by language, as having everything jumbled together isn't the greatest for quickly scanning. But these are minor quibbles, as I've been able to find what I need without much issue once I've gotten used to the docs.
What problems is the product solving and how is that benefiting you?
Renovate really shines for managing two kinds of repos: big ones with complicated dependencies and stable ones that don't otherwise get much attention. Especially for the stable ones, it's great to have deps march forward with full testing simply via approving PRs.


    Bervianto Leo P.

Great Whitesource

  • April 15, 2021
  • Review verified by G2

What do you like best about the product?
Security scanning features that allow me to detect the dependencies vulnerabilities. Github integration to detect the dependencies vulnerabilities. Detect each package and the solution for the vulnerabilities detection. It's great enough for me to help without browsing one by one the depencies. I can resolve the problem and also check the current vulnerabilities with easy way. It's great features for me. I think that features is really best as it is have free features. I know the free scanning have limitation but it's enough for me.
What do you dislike about the product?
No one, it's good enough. I think no one needs to be dislike. All is good enough.
What problems is the product solving and how is that benefiting you?
Security vulnerabilities scanner, easy to know and detect the security problem. It's feature really make me crazy, I know the dependencies vulnerabilies in a second. It's fast enough fore me. I can't realize if I need to check it one by one, it will take more time. Check one by one each package, each repositories, it will take much time if I do it manually. Thank you for whitesource that bring me the solution to check it use the whitesource-bolt for github which is give me to save my time and take more time for solving the packages dependencies instead of checking the package. So It's really great for me. This WhiteSource Software have possibilities to more growth since it will help all fellow developer or admin or security team to check each vulnerabilities. I can't say much. It's really great!
Recommendations to others considering the product:
You should see this one. It's excellent software that will help with security solutions.


    Computer Software

Renovate Github Bot helps me to keep my repos up to date

  • April 12, 2021
  • Review verified by G2

What do you like best about the product?
I think the best about the Whitesource Products are the Integration with for example Github. The Github Apps are easy to install and provide a great user experience. For exmple the renovate bot automatically informs you about package updates. When updating packages packages from a monorepo are considered. Also changelogs are displayed in pull request messages from the renovate bot.
What do you dislike about the product?
I think there is nothing to dislike about the whitesource products.
What problems is the product solving and how is that benefiting you?
They realy help keeping dependencies up-to-date and help with vulnerabilities in depended on packages.
Recommendations to others considering the product:
Use it. It meets all requirements.


    Ricardo R.

Impressive tool to understand your Code...

  • April 05, 2021
  • Review provided by G2

What do you like best about the product?
Ability to explore code dependencies and get a better insight of the real extent or external component usage.
What do you dislike about the product?
Can't really think of many flaws I would address on the software...
What problems is the product solving and how is that benefiting you?
Licensing scope can be critical if not addressed timely, we can pipoint potential issues before they arise as a major problem.


    Telecommunications

Better solutions in the market

  • March 22, 2021
  • Review provided by G2

What do you like best about the product?
There's a lot of work involved in setting it up, but it works for the most part, except it doesn't cover dependencies of dependencies, which may be a requirement that you need to cover. The interface is clunky and outdated. There are new players emerging players in the market that are playing catch-up (e.g. FOSSA)
What do you dislike about the product?
I'm not a fan of the sales team and their tactics -- very high pressure. I would be very careful in approaching any conversations with these folks.
What problems is the product solving and how is that benefiting you?
Evaluating risks associated with FOSS.
Recommendations to others considering the product:
Look at other solutions.