+
+

Related Products

  • Wiz
    1,088 Ratings
    Visit Website
  • Aikido Security
    123 Ratings
    Visit Website
  • ZeroPath
    2 Ratings
    Visit Website
  • Reflectiz
    15 Ratings
    Visit Website
  • Jscrambler
    33 Ratings
    Visit Website
  • imgproxy
    15 Ratings
    Visit Website
  • Chainguard
    46 Ratings
    Visit Website
  • Source Defense
    7 Ratings
    Visit Website
  • DataDome
    221 Ratings
    Visit Website
  • Teradata VantageCloud
    992 Ratings
    Visit Website

About

Phylum defends applications at the perimeter of the open-source ecosystem and the tools used to build software. Its automated analysis engine scans third-party code as soon as it’s published into the open-source ecosystem to vet software packages, identify risks, inform users and block attacks. Think of Phylum like a firewall for open-source code. Phylum’s database of open-source software supply chain risks is the most comprehensive and scalable offering available, and can be deployed throughout the development lifecycle depending on an organization’s infrastructure and appsec program maturity: in front of artifact repository managers, directly with package managers or in CI/CD pipelines. The Phylum policy library allows users to toggle on the blocking of critical vulnerabilities, attacks like typosquats, obfuscated code and dependency confusion, copyleft licenses, and more. Users can also leverage OPA to create custom policies.

About

Secure your supply chain. Ship with confidence. Socket fights vulnerabilities and provides visibility, defense-in-depth, and proactive supply chain protection for JavaScript and Python dependencies. Find and compare millions of open source packages. Socket is not a traditional vulnerability scanner. Socket proactively detects and blocks 70+ signals of supply chain risk in open source code, for comprehensive protection. Prevent compromised or hijacked packages from infiltrating your supply chain by monitoring changes to package.json and more in real-time. Socket is built by a team of prolific open source maintainers whose software is downloaded over 1 billion times per month. We understand how to build tools that developers love. But don’t take our word for it.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Companies who are looking to secure the use open-source software, and address software supply chain risks associated with malicious software packages and zero-day vulnerabilities

Audience

Developers interested in a software supply chain security solution

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

$8 per user per month
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Phylum
Founded: 2020
United States
phylum.io

Company Information

Socket
Founded: 2020
United States
socket.dev/

Alternatives

Xygeni

Xygeni

Xygeni Security

Alternatives

Xygeni

Xygeni

Xygeni Security
Revenera SCA

Revenera SCA

Revenera

Categories

Categories

Application Security Features

Analytics / Reporting
Open Source Component Monitoring
Source Code Analysis
Third-Party Tools Integration
Training Resources
Vulnerability Detection
Vulnerability Remediation

DevOps Features

Approval Workflow
Dashboard
KPIs
Policy Management
Portfolio Management
Prioritization
Release Management
Timeline Management
Troubleshooting Reports

Integrations

GitHub
JavaScript
Python
Apache Maven
Avantis
Axis LMS
Azure DevOps Server
Bitbucket
C#
Cargo
Eway
JFrog Artifactory
Java
NuGet
Observo AI
Ruby
Rust
Sonatype Nexus Repository Community Edition
TypeScript
npm

Integrations

GitHub
JavaScript
Python
Apache Maven
Avantis
Axis LMS
Azure DevOps Server
Bitbucket
C#
Cargo
Eway
JFrog Artifactory
Java
NuGet
Observo AI
Ruby
Rust
Sonatype Nexus Repository Community Edition
TypeScript
npm
Claim Phylum and update features and information
Claim Phylum and update features and information
Claim Socket and update features and information
Claim Socket and update features and information