-
“With Synopsys Coverity and Black Duck solutions, we were able to achieve our safety and quality standard certifications.”
-
"We engaged Black Duck audit services to do some open source scans of three codebases, to give us some confidence through the purchasing process of what exposures there might be from an open source risk perspective."
-
“It is very important to understand each team’s skills and take a down-to-earth approach. For example, sales and those who are not acquainted with software may not even understand what open source is, so it has to be explained. It is also very important not to just end up emphasizing …
-
"We connected with Black Duck several months before our IPO because our investors, our board and our management team felt it was important – critical, in fact – to understand the health of our source code in terms of security, quality and licensing."
-
"When we built our business case for bringing in Black Duck, our internal information security group was a co-sponsor of the effort. This group now has a significantly easier way to determine which artifacts and versions are affected by any security vulnerability and which applications are impacted as a result. …
-
“A human only gets involved in the event of an exception. This saves a lot of time. For us, the main thing is to get out of development’s way. The old system really slowed down development, but with Black Duck, they don’t have to worry about filling out spreadsheets. Plus …
-
“This is due to many reasons: limited resources and time, concerns that something may break, or in some cases, admins don’t even know that a critical patch is available. That’s why ZPE takes on the responsibility for customers. They’re assured that the systems running their infrastructure are running the latest, …
-
“The Black Duck Hub allows us to catch security vulnerabilities before our code goes out to clients.”
-
“ClickFox is the only customer journey analytics platform certified on Hadoop. Our product mission is to enable the business analysts of our clients to easily perform complex journey science and enable them to monetize data by gaining a deep understanding of what their customers are experiencing.”
-
“With Black Duck, monitoring of third-party vulnerabilities is a required Trend Micro policy in order to release a product. Our product teams must perform Black Duck scans regularly and address discovered vulnerabilities in compliance with corporate policy. Our policy requires that all high or critical vulnerabilities with a CVSS score …
-
“Even once we had an official policy in place, it was clear that we needed to bring all stakeholders on board with the importance of OSS license compliance in software development."
-
"Avira believes security is a right, not a privilege."
-
"What Black Duck does is put a light on open source code problems prior to release of a new version of our product. It’s helped us correct issues, plus ensure we don’t have similar issues in the future."
-
“It was quickly established that Black Duck, as recommended by GENIVI, was indeed the best solution for the job.”
-
"SFR chose Seeker to help prevent code vulnerabilities of web applications and obtain real-time results for quick remediation."