When comparing Snyk vs WhiteSource Bolt, the Slant community recommends Snyk for most people. In the question“What are the best DevOps security tools?” Snyk is ranked 4th while WhiteSource Bolt is ranked 5th. The most important reason people chose Snyk is:
Snyk can connect directly to GitHub, GitLab, Heroku, AWS Lambda, Bitbucket Server etc. It is also possible to use the [CLI](https://snyk.io/docs/getting-started-with-our-cli/).
Ranked in these QuestionsQuestion Ranking
Pros
Pro Integrations
Snyk can connect directly to GitHub, GitLab, Heroku, AWS Lambda, Bitbucket Server etc. It is also possible to use the CLI.
Pro TeamCity plugin
TeamCity plugin available.
Pro Multi language support
Snyk supports .NET, GO, Java. Node.js, PHP, Python, Ruby, Scala.
Pro Supports over 200 programming languages
Pro CI integration
The paid version supports Azure pipelines, TeamCity, Jenkins, Bamboo, CircleCI and Travis CI.
Pro Free
Free version available.
Cons
Con Shallow .NET support
Only seems to check the NuGet packages and not much else.
Con ASP.NET Core is "High risk"
The TeamCity plugin fails the build for all ASP.NET Core applications stating that it is vulnerable to DOS attacks and that "there is no fix available".
Con Limited free version
Free version is limited to 5 scans per repo a day.
