+
+

Related Products

  • Aikido Security
    123 Ratings
    Visit Website
  • SonarQube Cloud
    190 Ratings
    Visit Website
  • Wiz
    1,088 Ratings
    Visit Website
  • ZeroPath
    2 Ratings
    Visit Website
  • Reflectiz
    15 Ratings
    Visit Website
  • Jscrambler
    33 Ratings
    Visit Website
  • JS7 JobScheduler
    1 Rating
    Visit Website
  • Chainguard
    46 Ratings
    Visit Website
  • imgproxy
    15 Ratings
    Visit Website
  • Source Defense
    7 Ratings
    Visit Website

About

Phylum defends applications at the perimeter of the open-source ecosystem and the tools used to build software. Its automated analysis engine scans third-party code as soon as it’s published into the open-source ecosystem to vet software packages, identify risks, inform users and block attacks. Think of Phylum like a firewall for open-source code. Phylum’s database of open-source software supply chain risks is the most comprehensive and scalable offering available, and can be deployed throughout the development lifecycle depending on an organization’s infrastructure and appsec program maturity: in front of artifact repository managers, directly with package managers or in CI/CD pipelines. The Phylum policy library allows users to toggle on the blocking of critical vulnerabilities, attacks like typosquats, obfuscated code and dependency confusion, copyleft licenses, and more. Users can also leverage OPA to create custom policies.

About

automatic web application & API security using machine learning open-appsec is an open-source initiative that builds on machine learning to provide pre-emptive web app & API threat protection against OWASP-Top-10 and zero-day attacks. It can be deployed as add-on to Kubernetes Ingress, NGINX, Envoy and API Gateways. open-oppsec simplifies maintenance as there is no threat signature upkeep and exception handling, like common in many WAF solutions.

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Platforms Supported

Windows
Mac
Linux
Cloud
On-Premises
iPhone
iPad
Android
Chromebook

Audience

Companies who are looking to secure the use open-source software, and address software supply chain risks associated with malicious software packages and zero-day vulnerabilities

Audience

DevOps engineers

Support

Phone Support
24/7 Live Support
Online

Support

Phone Support
24/7 Live Support
Online

API

Offers API

API

Offers API

Screenshots and Videos

Screenshots and Videos

Pricing

No information available.
Free Version
Free Trial

Pricing

No information available.
Free Version
Free Trial

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Reviews/Ratings

Overall 0.0 / 5
ease 0.0 / 5
features 0.0 / 5
design 0.0 / 5
support 0.0 / 5

This software hasn't been reviewed yet. Be the first to provide a review:

Review this Software

Training

Documentation
Webinars
Live Online
In Person

Training

Documentation
Webinars
Live Online
In Person

Company Information

Phylum
Founded: 2020
United States
phylum.io

Company Information

open-appsec
Founded: 2022
Israel
www.openappsec.io

Alternatives

Xygeni

Xygeni

Xygeni Security

Alternatives

CloudGuard AppSec

CloudGuard AppSec

Check Point Software Technologies
AppTrana

AppTrana

Indusface

Categories

Categories

Application Security Features

Analytics / Reporting
Open Source Component Monitoring
Source Code Analysis
Third-Party Tools Integration
Training Resources
Vulnerability Detection
Vulnerability Remediation

DevOps Features

Approval Workflow
Dashboard
KPIs
Policy Management
Portfolio Management
Prioritization
Release Management
Timeline Management
Troubleshooting Reports

Application Security Features

Analytics / Reporting
Open Source Component Monitoring
Source Code Analysis
Third-Party Tools Integration
Training Resources
Vulnerability Detection
Vulnerability Remediation

Web Application Firewalls (WAF) Features

Access Control / Permissions
Alerts / Notifications
Automate and Orchestrate Security
Automated Attack Detection
Dashboard
DDoS Protection
IP Reputation Checking
Managed Rules
OWASP Protection
Reporting / Analytics
Secure App Delivery
Server Cloaking
Virtual Patching
Zero-Day Attack Prevention

Integrations

Apache Maven
Azure DevOps Server
Bitbucket
C#
Cargo
F5 NGINX Ingress Controller
GitHub
GitLab
Go
JFrog Artifactory
Java
JavaScript
Kubernetes
NGINX
NuGet
Python
Rust
Sonatype Nexus Repository
Sonatype Nexus Repository Community Edition
TypeScript

Integrations

Apache Maven
Azure DevOps Server
Bitbucket
C#
Cargo
F5 NGINX Ingress Controller
GitHub
GitLab
Go
JFrog Artifactory
Java
JavaScript
Kubernetes
NGINX
NuGet
Python
Rust
Sonatype Nexus Repository
Sonatype Nexus Repository Community Edition
TypeScript
Claim Phylum and update features and information
Claim Phylum and update features and information
Claim open-appsec and update features and information
Claim open-appsec and update features and information