Mend is an excellent SCA solution. The prioritize feature saves a lot of time.
What do you like best about the product?
The most helpful feature in Mend.io is the Prioritize feature. It is a fast scan that checks if a vulnerability is reacheable by your code. So you can fix the vulnerabilities that trully affects your application
What do you dislike about the product?
I miss some kind of PoC for the CVEs that mend identifies. Some times it's hard to verify if the vulnerability is a true positive
What problems is the product solving and how is that benefiting you?
The main problem that Mend.io is solving is about reducing the False Positives vulnerabilities and the non reachable vulnerabilities in the Software Composition Analysis
There are no comments to display