The most valuable features of this solution are: * The vulnerability and license alerts are the main purposes of us utilizing this tool. We don't want to ship software and mistakenly include a GPL… more»
How has it helped my organization?
We moved from Black Duck to WhiteSource as it was a more modern and scalable solution, with better integration support to various build and source environments. The ease of running scans and getting… more»
What needs improvement?
Places in need of improvement are: * Some detected libraries do not specify a location of where in the source they were matched from, which is something that should be enhanced to enable quicker… more»
What's my experience with pricing, setup cost, and licensing?
Pricing is competitive.
Which solution did I use previously and why did I switch?
Prior to this solution, we used Black Duck. As of two years ago, when we made the switch, WhiteSource's UI was more modern, the SaaS solution more scalable, and the integration capabilities far… more»
Which other solutions did I evaluate?
We also use NPM Audit and Snyk, but as an augmentation; not as competitors.