It took me a lot of time in the past to go through numerous security test results only to find a few critical issues, with Code Dx, I can quickly identify such problems. This can help my team to better prioritize the remediation of issues and attack the most critical vulnerabilities more proactively. Review collected by and hosted on G2.com.
False positive is a major issue in Code Dx that the tool has a problem of providing many incorrect vulnerability reports. This can be annoying and also lowers my trust in the reported vulnerabilities and their precision. Review collected by and hosted on G2.com.
When using Code Dx I receive relevant concerns that require attention from the development team then I can work on the most pressing matters first. Review collected by and hosted on G2.com.
I find some pros of Code Dx, but my main worry is that the vulnerability data might not be up to date. Because vulnerability feed integration is done beforehand, the platform may take time to obtain feeds of newly discovered exploits. Review collected by and hosted on G2.com.
Code Dx summarizing my security results from a number of code scanners. These priorities help me address the most important threats first because they are more likely to be exploited, and this makes it easier to manage the overall risk. Review collected by and hosted on G2.com.
Filtering out false negatives is not possible in Code Dx. Sometimes, I notice specific results of individual scanners that seem to be concealed in a general report. Review collected by and hosted on G2.com.