
Checkmarx One Malicious Package Protection is a commercial Software Composition Analysis tool developed by Checkmarx. Security professionals most commonly compare it with . All 48 alternatives are matched by shared capabilities, tags, and NIST CSF 2.0 coverage.
A closer look at the 8 most relevant alternatives and competitors to Checkmarx One Malicious Package Protection, including their key features and shared capabilities.
Detects and blocks malicious/vulnerable open source packages in supply chains.
Shares 5 capabilities with Checkmarx One Malicious Package Protection: Dependency Scanning, Open Source, Supply Chain Security, Package Security +1 more
Software supply chain security platform with SCA, package firewall & threat intel
Shares 4 capabilities with Checkmarx One Malicious Package Protection: Dependency Scanning, Supply Chain Security, Package Security, Software Supply Chain
Software supply chain security platform detecting malware in dependencies
Shares 4 capabilities with Checkmarx One Malicious Package Protection: Dependency Scanning, Supply Chain Security, Package Security, Software Supply Chain
Traces third-party library usage at function level to identify dependency risk.
Shares 4 capabilities with Checkmarx One Malicious Package Protection: Dependency Scanning, Open Source, Supply Chain Security, Software Supply Chain
Autonomous open source supply chain security & license compliance platform.
Shares 4 capabilities with Checkmarx One Malicious Package Protection: Dependency Scanning, Open Source, Supply Chain Security, Software Supply Chain
Software supply chain security platform with AI-powered scanning to detect malicious code
Shares 4 capabilities with Checkmarx One Malicious Package Protection: Dependency Scanning, Open Source, Supply Chain Security, Software Supply Chain
Enterprise SBOM management platform for software supply chain security.
Shares 4 capabilities with Checkmarx One Malicious Package Protection: Dependency Scanning, Open Source, Supply Chain Security, Software Supply Chain
SCA tool that finds, prioritizes, and fixes open source vulnerabilities
Shares 3 capabilities with Checkmarx One Malicious Package Protection: Dependency Scanning, Open Source, Supply Chain Security
Detects and blocks malicious/vulnerable open source packages in supply chains.
Software supply chain security platform with SCA, package firewall & threat intel
Software supply chain security platform detecting malware in dependencies
Traces third-party library usage at function level to identify dependency risk.
Autonomous open source supply chain security & license compliance platform.
Software supply chain security platform with AI-powered scanning to detect malicious code
Enterprise SBOM management platform for software supply chain security.
SCA tool that finds, prioritizes, and fixes open source vulnerabilities
AI-native AppSec platform with SAST, SCA, container & dependency mgmt.
Automated SCA tool for open source dependency management and vulnerability remediation
SCA platform for managing open source vulnerabilities across SDLC
SCA tool for code scanning, license identification, and SBOM generation
Malware detection across SDLC, DevOps pipelines, and open-source components
Scans open-source licenses in dependencies and generates SBOMs for compliance
AI-native AppSec platform with SCA, SAST, container & dependency mgmt.
SCA tool for managing open source security risks and vulnerabilities
SCA tool for SBOM generation, dependency analysis, and open-source risk mgmt.
SBOM generation tool for software supply chain visibility and risk management
Vulnerability detection dataset for declared & undeclared dependencies in code
AI-driven SCA tool for open-source dependency vulnerability detection & remediation
SCA tool for managing security, quality, and license risks in open source code
Malware-resistant software libraries rebuilt from source for multiple languages
AI-powered AppSec platform for code, dependencies, and container security
AI-powered software supply chain security platform with SBOM management
Automated vulnerability patching for open-source libraries and containers
Automated CVE patching for open source software components
SCA tool detecting OSS vulnerabilities & license risks in code, binaries, containers.
OpenSCA Project is a dependency security scanner that runs in the browser.
AI-driven app & supply chain security platform with SBOM generation & scanning
SBOM tool for identifying software supply chain vulnerabilities
Open-source vulnerability detection platform for software supply chain
Binary code analysis platform for software supply chain security and SBOM gen.
OSS risk management system for SBOM generation, vuln & license analysis.
SBOM creation, management & vulnerability scanning across the dep. tree.
Tool for searching, comparing, and evaluating open source dependencies.
Database for researching & tracking open source components with safety scores.
Free SCA tool for open source projects with vuln scanning & SBOM.
A Python script that scans Nexus Repository Manager for artifacts with identical names across repositories to identify dependency confusion attack vulnerabilities.
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
AI-powered application security platform for software development
SCA tool for identifying vulnerabilities in open-source dependencies
AppSec platform for supply chain security, SBOM analysis & vuln mgmt
Universal artifact repository & software supply chain security platform
SCA tool for vulnerability detection, malicious code identification & remediation
SCA tool for detecting vulnerabilities & license risks in open-source deps
SCA tool for identifying & remediating open-source vulnerabilities & risks
SCA tool that scans open-source dependencies for vulnerabilities and malware
Full lifecycle software supply chain security platform for code integrity
Common questions security professionals ask when evaluating alternatives and competitors to Checkmarx One Malicious Package Protection.
The most popular alternatives to Checkmarx One Malicious Package Protection include Socket, Veracode Secure Your Software Supply Chain, Aikido Software Supply Chain Security, FYEO Third Party Library Scanner, and Threatrix Autonomous Platform. These Software Composition Analysis tools offer similar capabilities and are frequently compared by security professionals evaluating their options.