17 ans à aider les entreprises canadiennes
à choisir le meilleur logiciel
Nexus Lifecycle
Description de Nexus Lifecycle
La plateforme Nexus de Sonatype automatise la gouvernance open source afin de réduire les risques et d'accélérer l'innovation logicielle.
Qui utilise Nexus Lifecycle?
Développeurs de logiciels, professionnels de la sécurité des applications, experts DevSecOps.
Nexus Lifecycle ne vous convainc pas tout à fait ?
Comparer avec une alternative populaire
Nexus Lifecycle
Avis sur Nexus Lifecycle
Note moyenne
Avis classés par taille de l'entreprise (nombre d'employés)
- <50
- 51-200
- 201-1 000
- >1 001
Trouver les avis classés par note
Alternatives envisagées :
vulnerability analysis tool
Commentaires : my experience with Nexus Lifecycle is that it allows me to identify and secure vulnerable devices when doing development, which really allows me to work with peace of mind and confidence
Avantages :
Firstly, what is good about Nexus Lifecycle is that it is easy to install and use, it supports several types of packages, has very good documentation and is available in several languages. secondly, the vulnerability feature is excellent when it comes to application vulnerability analysis
Inconvénients :
First of all, Nexus Lifecycle is more expensive than its competitors, so access to the paid version is not available to everyone, Then, its interface is often heavy when adding several components
Alternatives envisagées :
Binary Repository for the large enterprise
Commentaires : It's fairly easy to install, pricy from the enterprise version, supports all packages types.
Avantages :
The Open Source version has enough functionality (comparing to competitors) to be one of the best in its field. It has vast support for all packages type and the installation is fairly easy
Inconvénients :
The issue will begin once you like to move from the Open Source version to the commercial one, it is pricy (again comparing to the competitors) it has a business module of per user per year cost and if your budget is limited you would find yourself with an issue of funding it. It is not the best in line with the enterprise versions out there.
Alternatives envisagées :
Automatic vulnerability detection and mitigation tool in software development process
Commentaires : I primarily used the tool to detect supply chain vulnerability to mitigate attacks for the development team.
Avantages :
Easier to install, and use and helping our team in mitigating supply chain attacks.
Inconvénients :
It has a high per-year basis subscription and is not up to the mark with the other competitor with similar costs
Powerful artifact manager, but has some rough edges
Avantages :
Supports all major artifact types, such as npm, helm, docker, etc. Powerful integrations with major 3rd party tools.
Inconvénients :
Open source version does not allow integrating with non-Maven deployment types, making it difficult to evaluate even for those preparing to use enterprise version.