Snyk
Security scanning for code, open-source dependencies, containers, and infrastructure as code. · Snyk · Security
Overview
Snyk scans source code, open-source dependencies, containers, and infrastructure as code for security issues. The free plan covers 5 projects with a monthly test limit for each product.
Good fit
Use Snyk on small projects to catch vulnerable dependencies and code issues early, from the IDE, CLI, or pull requests.
- open-source maintainers
- side projects
Not a fit
Avoid if you need more than 5 projects or frequent SAST runs; the free test limits run out fast in CI.
- large monorepos scanned on every commit
Quickstart · 3 steps
- Sign up at app.snyk.io with GitHub, GitLab, or email.
- Import a repository or install the Snyk CLI.
- Run snyk test in a project to see its issues.
Other free security options
Free tierWhat you get freeRiskCard
Let's Encrypt · Security
50 certificates per registered domain per week · 5 duplicate certificates (same identifiers) per week · 90-day certificate validity
Billing risk: None
No card
GitGuardian · Security
Up to 25 developers · Unlimited real-time secret scanning · Up to 500 historical scan detections
Billing risk: None
No card
Cloudflare · Security
Up to 20 widgets per account · Works without other Cloudflare services
Billing risk: None
No card
Mozilla · Security
Free to scan any domain · Scan history is public · Free v2 API for scans
Billing risk: None
No card