WhiteSource Named a Leader in Software Composition Analysis by Independent Research Firm

WhiteSource received among the highest scores in The Forrester Wave™: Software Composition Analysis Q3, 2021 report in the criteria of vulnerability identification, remediation, and breadth of coverage.

TEL AVIV AND BOSTON – August 23, 2021 – WhiteSource was evaluated alongside nine other vendors in The Forrester Wave™: Software Composition Analysis Q3, 2021 report based on three categories: Current Offering, Strategy, and Market Presence. In the evaluation, WhiteSource received the highest possible scores in open source vulnerability identification and remediation guidance, as well as 12 other criteria.

According to the report, “Customers looking to enable their dev teams with a remediation experience that addresses security, compliance, and code quality should add WhiteSource to their shortlist.”

Under Current Offering, WhiteSource received the highest scores in the criteria of remediation and breadth of coverage and among the highest scores in vulnerability identification. The Forrester report stated that “WhiteSource addresses supply chain security with its launch of Diffend, which flags malicious components.” The report noted that “The Merge Confidence feature details a new component version’s age, adoption, and potential to break the build, giving dev teams the data to make a remediation decision faster.”

Under the Strategy category, WhiteSource received the highest possible scores in the criteria of product vision and planned enhancements. The report states that “WhiteSource’s strategy focuses on helping developers remediate issues quickly and easily and keep their code up to date.”

“We believe our position as a leader in the Forrester Wave is a testament to our remediation-centric approach, including the acquisition of Diffend and the launch of WhiteSource Cure as part of a long-term application security strategy,” said Rami Sass, Co-Founder and CEO of WhiteSource.

Mend Named a Leader in Software Composition Analysis by Independent Research Firm - aHViPTcyNTE0JmNtZD1pdGVtZWRpdG9yaW1hZ2UmZmlsZW5hbWU9aXRlbWVkaXRvcmltYWdlXzVjN2QwMWJjMGQzMDEuanBnJnZlcnNpb249MDAwMCZzaWc9NDk2NGRjMTA2ZTY0MDJiOTE1M2I2ZTk3MGQ5ZjViZGM3D

About Mend.io

Mend.io offers the first AI native application security platform, empowering organizations to build and run a proactive AppSec program tuned for AI powered development. The unified platform secures AI generated code and embedded AI components, drives risk reduction through AI powered remediation, automates compliance, and provides a holistic enterprise scale view of risks and clear actions for developers across your entire codebase.