Reviews from AWS Marketplace
0 AWS reviews
-
5 star0
-
4 star0
-
3 star0
-
2 star0
-
1 star0
External reviews
External reviews are not included in the AWS star rating for the product.
Must have to keep commit safe
What do you like best about the product?
I like the 2 clicks integration into the hot workflow for pull request integrate. Like the fact that got guardian went backward to perform all security check in previous commits at first.
What do you dislike about the product?
Nothing the product meets all requirements.
What problems is the product solving and how is that benefiting you?
Catching security issue/ data leak within public (or private) for repository. This is particularly usefully for certification process (adding to best practices).
- Leave a Comment |
- Mark review as helpful
Freelance developer new to GitGuardian
What do you like best about the product?
Interface in website. Easy to navigate and provides critical info.
What do you dislike about the product?
Nothing yet. My experience so far (about 2 weeks) has been terrific.
What problems is the product solving and how is that benefiting you?
Helps flag potential issues with the code I post in GitHub
Has saved me from making mistakes at 3am more than once
What do you like best about the product?
GitGuardian is very painless to use, has a simple and intuitive UI, and will tell you specifically where you made a mistake in regards to secrets or exploitable methods.
What do you dislike about the product?
Initial usage can be a bit daunting - there's alot to take in at first, and it is a bit irritating that private collaborative repositories are not under the default plan (although that is understandable)
What problems is the product solving and how is that benefiting you?
When working late hours on code, GitGuardian helps prevent making innocent mistakes, where an IDE might automatically add a configuration file to a branch push that contains a secret.
Detects quite a few secrets already!
What do you like best about the product?
The service is currently actively detecting quite a few keytypes and other secrets, as you can tell from the OWASP WrongSecrets testbed.
What do you dislike about the product?
It does not detect everything yet: I did not get warnings on some of the callbacks (e.g. Slack Webhooks), but i did on many tokens already.
What problems is the product solving and how is that benefiting you?
It helps detecting secrets in code & it can warn out of band by email about which secrets it found. This can greatly help ensuring secrets remain out of code.
Recommendations to others considering the product:
Start with open source tools first and then see how GitGuardian can help you improve your posture!
Easy to Use
What do you like best about the product?
is easy to set up. there are some false positives on config.yaml.dist files that say FOOBAR_APIKEY: "yourKeyHere" but this is hard to check for if it is a false positive, but it lets you declare whether it is or not which is nice.
What do you dislike about the product?
is slow on pre-commit hooks while waiting for it to run, if it ran faster that'd be cool lol
What problems is the product solving and how is that benefiting you?
no issues.
GitGuardian Review
What do you like best about the product?
The dashboard, detailed incident information, detector quality, and availability of integrations.
What do you dislike about the product?
Nothing to report for now, but I need more time...
What problems is the product solving and how is that benefiting you?
Mostly incidents with secrets due to the development of products using git.
It does exactly what its name suggests
What do you like best about the product?
It shows the vulnerabilities and exposed secrets in your repositories which is really critical as git is one the most overlooked, yet common sources of security breaches.
What do you dislike about the product?
So far, not much. Hopefully as I used it more, it stays the same.
What problems is the product solving and how is that benefiting you?
It reveals the security issues that I had failed to notice, specially dealing with so many branches and commit histories. I also really like the feature showing which developers most likely know about the exposed secrets.
Junior Dev discovers incident exposure
What do you like best about the product?
The augmented pull requests for GitHub save loads of time and energy. The addition of Personal Access Tokens for ggshield cli use is also extremely exciting!
What do you dislike about the product?
In my view, there's nothing to complain about given that access is free.
What problems is the product solving and how is that benefiting you?
As a budding developer breaking into the industry, GG has enabled me to clean up my portfolio.
Recommendations to others considering the product:
You'd be disadvantaging yourself by delaying inquisition into GitGuardian.
GitGuardian: Code Scanner for CICD microservices
What do you like best about the product?
GitGuardian is an excellent tool to scan the code after every commit. It makes sure that developers didn't commit any secret value in the code by mistake. We have integrated it with the CI pipelines, and I must say that interation is very easy. We can monitor all the repo and reports from a single dashboard. ONe of the think which I like is, GitGuardian provides integration with almost all the CI tools and microservices tools.
What do you dislike about the product?
Currently, the features are limited to secrets scan, It's not something to dislike, but I would like to see the features like Docker image scan and IaC scans in the future.
What problems is the product solving and how is that benefiting you?
We generally encountered issues like pushing the tokens and secrets to the git repos. GitGuardian is helping by scanning the repos after every commit. This tool is beneficial for beginner developers and DevOps teams.
Prevent developers from committing secrets
What do you like best about the product?
Ease of use and integration with Github.
Instant alert whenever you mistakenly check a secret into your commits.
You can easily manage (resolve, ignore, etc) all incidents from the GitGuardian dashboard.
Instant alert whenever you mistakenly check a secret into your commits.
You can easily manage (resolve, ignore, etc) all incidents from the GitGuardian dashboard.
What do you dislike about the product?
Since the time I've started using GitGuardian, I can't think of anything feature I dislike.
But I hope GitGuardian adds more features like local integration with IDE/code editors.
But I hope GitGuardian adds more features like local integration with IDE/code editors.
What problems is the product solving and how is that benefiting you?
Improve the development of secure applications with the confidence that GitGuardian will alert you should you mistakenly commit your secret configuration file, secret keys.
showing 181 - 190