“Without Nexus Lifecycle, you just don’t know the true composition of your applications, and what elements of security, legal, and licensing risk you’re exposed to. A security breach that results in just a 1% hit to the customer base can manifest itself as hundreds of millions of dollars lost.”
“Thanks to Sonatype we have improved the security of software products, in particular the security of Open libraries within a staging logic.”
“We had a meeting in our DevSecOps community a couple months ago. Different teams are actually working with their source code and the repositories and the way they're merging and branching and they're releasing and all that. There are five or six different ways that teams are doing it.”
"Nexus helped reduce local setup, since there is only one repository location to point to for external dependencies. This also helped increase the download speed of those dependencies."
"Nexus should be a must. Once you embrace it, you won't want to go back."
"Nexus has given us a solid repository for our artifact storage and is our ultimate source of truth for the available versions of our own internal application wars and jars. We're very happy with the LDAP integration, REST API, and I recommend it."
"Nexus helped to reduce our costs for dependency management. We saw a much lower failer rate caused by using wrong artifacts and saw much faster builds due to the proxy cache."
“Sonatype specializes in streamlining component-based development, so the quality is much higher than any other solution we evaluated and far better than manual effort.”
"Everyone who saw Nexus Lifecycle said, ‘This is something we can work with. This is the tool that works for us."
"With Lifecycle, we can help programmers make the right decisions and make their software more secure. That's why we chose Nexus Lifecycle."
"We narrowed down our trials to Sonatype Nexus and JFrog Artifactory. We decided to go with Nexus because the OSS version seemed to deliver most of what we were looking for."
"We’ve had a single Nexus instance standing up for two years. The maintenance and support effort is zero because everything just works."
“Through the use of Nexus Lifecycle, our team can proactively ensure open source security vulnerabilities are precisely identified, managed and resolved before they can impact our customers.”
"The biggest advantage of using IQ Server is to be able to report to our project team what specific libraries are used within our applications. We have immediate visibility into security issues."
"We needed constant monitoring and notifications of open source vulnerabilities in our applications. That’s what Nexus Repository, Nexus Lifecycle and IQ Server delivered."