GitHub vs Sonatype Repository Firewall comparison

 

Comparison Buyer's Guide

Executive Summary
 

Categories and Ranking

GitHub
Ranking in Application Security Tools
9th
Average Rating
8.6
Number of Reviews
75
Ranking in other categories
Version Control (3rd)
Sonatype Repository Firewall
Ranking in Application Security Tools
35th
Average Rating
8.4
Number of Reviews
3
Ranking in other categories
Software Composition Analysis (SCA) (14th)
 

Market share comparison

As of June 2024, in the Application Security Tools category, the market share of GitHub is 1.3% and it increased by 44.5% compared to the previous year. The market share of Sonatype Repository Firewall is 0.4% and it increased by 61.7% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Application Security Tools
Unique Categories:
Version Control
3.6%
Software Composition Analysis (SCA)
1.4%
 

Featured Reviews

MA
Jul 18, 2022
Easy setup, stable and satisfactory performance
We use this solution for completing repository services code on Azure. We use it for different customers and to design and test environments. We also use it for some background testing We are satisfied with the performance, and we've never had any performance issues because we generally use it on…
Ashish Shukla - PeerSpot reviewer
Apr 11, 2022
You will get clean code every time, and that's a great achievement
For the QA team, it's a really good tool. For those who are not on the QA team, it is also a good tool to use for SDL in the SDLC. It plays a very critical role of doing the automatic quality check recommendation. Meaning, when using this tool, people can easily rectify the issues in the environment itself, instead of going to a higher environment and identifying them. This tool is quite easy to use and learn. We decided that there was no need to hire anyone new who would specialize in this. We had a team of about five to ten people who learned how to use this tool. There are some other automation tools like Jenkins, for example, that require a lot of effort to configure and write out the code, but you do not need to do such for this tool. I thought outside of the box and saw that there are many options available to us when using this tool. The plugins are there, you can download and use the tool at ease and you do not need to do any kind of development. Overall, it’s quite easy to use.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"We use GitHub as a repository."
"GitHub have a built-in software application development environment and this has been most useful."
"During our use of GitHub, we have not encountered any problems and GitHub adds new features frequently."
"It has a lot of features from the code development perspective. You get a lot of features such as repo, commit, merge, and branch. You can play around and do things on the fly. It is easy and simple to deploy. It is also easier to use when working from home."
"GitHub's merging feature is much better than that of other products because merging is done daily."
"We are finding GitHub is very stable."
"Any complex banking can be handled very easily in GitHub. It allows us to integrate with tools like Grid, where we can merge and resolve conflicts without any hassle."
"We've found the technical support to be very helpful."
"The product's network and intrusion protection features are valuable. It also has rules and compliance features for security."
"Another thing that I like about Sonatype is that if you download something today, and five days from today it becomes vulnerable, it will notify you."
 

Cons

"There is a bit of a learning curve."
"While using the solution when merging two code branches the code becomes a bit messy. This should be improved in the future."
"The solution could have better support for the Markdown language."
"The security for this solution could be tightened up and improved."
"The descriptions within Github could be more user-friendly to show the trees of Gitflow."
"GitHub could add some more security features."
"Though I haven't done much research, GitHub lacks in providing more functions like GitLab."
"This solution could be improved by offering crowd sourced support where we could ask questions to other users."
"The tool needs to improve its file systems. The product should also include zero test feature."
"What I don't like is the lack of an option to pick up the phone and call someone for support. That is something they need to improve on. They need to have a professional services package, or they need to include that option with their services."
 

Pricing and Cost Advice

"I use the free version of the tool."
"The licensing model from GitHub is very clear."
"The price of this solution is reasonable."
"The basic licensing model is free, and if you need to have technical support and such things, then it does cost something. You only need to pay extra if you need technical support."
"The tool offers a free program. As you go, you can upgrade from the community version to the professional one. I believe it costs about ten dollars per person, per month."
"You don't have to pay for a license if you are using the free version."
"The licensing model for GitHub is user-based. Whenever the new developer joins we have to get a new license and register their ID. The overall price of the solution is reasonable."
"It is open-source. There is no license for GitHub."
"The pricing is reasonable if you're a large enterprise developing code. It's not super-expensive."
report
Use our free recommendation engine to learn which Application Security Tools solutions are best for your needs.
787,061 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Computer Software Company
13%
Manufacturing Company
11%
Financial Services Firm
11%
Government
7%
Financial Services Firm
34%
Government
9%
Manufacturing Company
6%
Computer Software Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
 

Questions from the Community

What do you like most about GitHub?
The control is the most valuable feature as developers can work on a single code.
What is your experience regarding pricing and costs for GitHub?
We pay a subscription-based yearly licensing fee for the solution. If you buy extra support, you pay an additional cost.
What needs improvement with GitHub?
The solution's cost is high and should be reduced. Our company has a bundle product. Sometimes, people from outside our organization also need to collaborate with our code, and we need to integrate...
What do you like most about Sonatype Nexus Firewall?
The product's network and intrusion protection features are valuable. It also has rules and compliance features for security.
What is your primary use case for Sonatype Nexus Firewall?
The product helps with vulnerability and security assessment. It also helps with assessment at the configuration level.
 

Also Known As

No data available
Sonatype Nexus Firewall, Nexus Firewall
 

Learn More

 

Overview

 

Sample Customers

Dominion Enterprises, NASA, Braintree, SAP, CyberAgent
EDF, Tomitribe, Crosskey, Blackboard, Travel audience
Find out what your peers are saying about GitHub vs. Sonatype Repository Firewall and other solutions. Updated: May 2024.
787,061 professionals have used our research since 2012.