Try our new research platform with insights from 80,000+ expert users

Acunetix vs Mend.io comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Oct 8, 2024

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

ROI

Sentiment score
6.6
Entities saw 300% ROI with reduced risk, time savings, cost reduction, and improved security, justifying continued tool use.
Sentiment score
6.7
Mend.io enhances ROI by automating security, improving efficiency, and integrating seamlessly into workflows, saving time and costs.
It saves a significant amount of time by covering attack surfaces.
Information Security Engineer at Tübitak Bilgem
I have seen a return on investment, as Acunetix helps reduce the man-days and effort needed for scanning bulk applications through automated assessments.
Senior Engineer - Penetration Tester at a government with 10,001+ employees
Mend.io has provided a good return on investment by significantly reducing vulnerabilities.
CEO at a computer software company with 10,001+ employees
 

Customer Service

Sentiment score
6.5
Acunetix support is responsive and helpful, but response times vary, with some delays for high-severity issues noted.
Sentiment score
6.6
Mend.io customer service is proactive and responsive, praised for timely solutions, technical expertise, and efficient issue resolution.
For high-severity issues, they reach out within two to three hours, and for critical issues, a response is received within 15 minutes.
Lead Cybersecurity at TBO
The technical support from Invicti is very good and fast.
Information Security Engineer at Tübitak Bilgem
Support staff not being familiar with the problem.
Senior Engineer - Penetration Tester at a government with 10,001+ employees
They prioritize providing the best experience to large organizations like ours, belonging to the Fortune 100.
CEO at a computer software company with 10,001+ employees
I have noticed that the speed to respond has decreased over time.
VP at a tech vendor with 5,001-10,000 employees
Mend.io provides pretty good support.
CEO at a computer software company with 10,001+ employees
 

Scalability Issues

Sentiment score
6.9
Acunetix is praised for scalability across various environments, despite some dynamic scan issues and the need for Linux support.
Sentiment score
7.5
Mend.io scales seamlessly with organizational growth, integrating into workflows and DevOps tools, enhancing security and collaboration effortlessly.
Acunetix can handle increasing workloads and more applications easily.
Senior Engineer - Penetration Tester at a government with 10,001+ employees
 

Stability Issues

Sentiment score
8.1
Acunetix offers stable, reliable scans with minimal issues and high satisfaction, despite occasional upgrade glitches and initial speed concerns.
Sentiment score
7.7
Mend.io is stable with occasional slowdowns, recommended on Chrome/Firefox, and improved by ongoing enhancements and updates.
Mend.io is very stable; we did not have any issues.
CEO at a computer software company with 10,001+ employees
AI integration in code security tools like Mend.io is still in its early stages and relatively immature.
CEO at a computer software company with 10,001+ employees
 

Room For Improvement

Acunetix needs improvements in speed, accuracy, usability, integration, and support to enhance functionality and user satisfaction.
Mend.io users request better notifications, improved container scanning, clearer documentation, enhanced UI, flexible pricing, and reduced false positives.
The main concern is related to false positives; Acunetix needs to work on identifying valid and invalid findings.
Lead Cybersecurity at TBO
I could supply it with maybe a Swagger file or a JSON file, and Acunetix would pick it up, scan all the endpoints according to the OWASP Top Ten, and give me remediation and actionable remediation reports.
Team Lead, Application Security at a financial services firm with 5,001-10,000 employees
Acunetix should have better integration with newer tools such as GitHub and Azure DevOps.
CEO at Xcelliti
That's not a limitation of Mend.io; I think that's a general problem with any tool in the market because no tool in the market will actually know what portion of the code I'm actually using from that particular library if it is vulnerable or not.
CEO at a computer software company with 10,001+ employees
The actual challenge is how easy it is to integrate it in the early phase of the software development life cycle.
Principal Architect at a consultancy with 11-50 employees
I strongly recommend that they start working with AI for the reporting part.
VP at a tech vendor with 5,001-10,000 employees
 

Setup Cost

Acunetix pricing is seen as high and complex, impacting renewal decisions due to cost transparency and fluctuation issues.
Mend.io's pricing is seen as affordable and clear, yet varies by developer count, posing challenges for startups.
The pricing cost is affordable for small and mid-sized organizations, and when compared to Checkmarx, it is significantly affordable, as Checkmarx is quite expensive.
Lead Cybersecurity at TBO
We secured a special licensing model for penetration testing companies, which is cost-effective.
Information Security Engineer at Tübitak Bilgem
The pricing of Acunetix is pretty expensive and could be improved.
Senior Business Development Manager at Intouch World
The cost of Mend.io is competitive, being quite low compared to others.
CEO at a computer software company with 10,001+ employees
 

Valuable Features

Acunetix provides efficient, comprehensive vulnerability scanning with user-friendly features, accurate detection, and seamless integration, enhancing security management.
Mend.io provides comprehensive vulnerability detection, license management, and integration tools to enhance security and decision-making practices effectively.
Its most valuable role is in enhancing security by identifying potential vulnerabilities efficiently.
Senior Business Development Manager at Intouch World
The solution is excellent at detecting SQL injection and cross-site scripting vulnerabilities.
CEO at Xcelliti
The best feature Acunetix offers is the centralized dashboard and the quality of reports it generates, which includes various options for selecting reports and developer options for directly sharing the reports with developers.
Senior Engineer - Penetration Tester at a government with 10,001+ employees
We find it 100% accurate in detecting vulnerabilities.
CEO at a computer software company with 10,001+ employees
It handles Application Security, performing SCA SAST and container scanning.
Principal Architect at a consultancy with 11-50 employees
The features I find most valuable in Mend.io are the ease of use; it is very easy to access and integrate.
VP at a tech vendor with 5,001-10,000 employees
 

Categories and Ranking

Acunetix
Ranking in Application Security Tools
14th
Average Rating
7.8
Reviews Sentiment
6.6
Number of Reviews
36
Ranking in other categories
Static Application Security Testing (SAST) (10th), Vulnerability Management (28th), DevSecOps (6th)
Mend.io
Ranking in Application Security Tools
18th
Average Rating
8.4
Reviews Sentiment
7.0
Number of Reviews
33
Ranking in other categories
Software Composition Analysis (SCA) (7th), Static Code Analysis (5th), Software Supply Chain Security (4th)
 

Mindshare comparison

As of March 2026, in the Application Security Tools category, the mindshare of Acunetix is 2.1%, down from 2.5% compared to the previous year. The mindshare of Mend.io is 2.6%, down from 3.4% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Application Security Tools Mindshare Distribution
ProductMindshare (%)
Acunetix2.1%
Mend.io2.6%
Other95.3%
Application Security Tools
 

Featured Reviews

Rahul Kumar - PeerSpot reviewer
Senior Engineer - Penetration Tester at a government with 10,001+ employees
Identifies vulnerabilities across bulk web applications but needs better support and cleaner reports
The best feature Acunetix offers is the centralized dashboard and the quality of reports it generates, which includes various options for selecting reports and developer options for directly sharing the reports with developers. The centralized dashboard of Acunetix gives visibility into the security aspects of mass applications; for instance, with more than 200 applications, it provides a valuable overview of findings and necessary fixes, along with a high-level summary that helps us achieve compliance through monthly and sometimes weekly scanning. In terms of reporting, Acunetix is excellent because it can generate different types of reports, such as an executive summary report, detailed reports, and developer reports that can be shared directly with developers. Acunetix positively impacts my organization by helping identify outdated libraries and applications, including legacy applications vulnerable to old attacks based on OWASP Top 10, thus aiding in compliance checks for PCI DSS and OWASP. Acunetix provides a centralized report with compliance-related aspects and a vulnerability timeline, effectively helping reduce vulnerabilities and save time.
meetharoon - PeerSpot reviewer
CEO at a computer software company with 10,001+ employees
Centralized security monitoring has reduced false positives and improves dependency governance
The only area for improvement I would say is that the false positives are nearly zero; everything is mostly like 99 to 99.99% or we can say 100% accurate. There were a few areas for improvement just from the last time I saw; I think the user experience had a little problem. We wanted to have certain reports based on our kind of scenario, but the tool did not allow us to create custom reports. We had asked for some facility and some ability for us to create some custom reports. That would be awesome if they allow us to create custom reports the way we wanted. There is one small area which I don't know whether we should call a tool limitation or a wish list; if I use a library and I don't use all the capabilities of the library but only a portion of it and that portion is not vulnerable, but there is a component which is outdated, that is a problem, even though I don't use that component. Mend.io will discover there is a problem in the whole library; that is correct. That's a valid discovery, but in my case, for example, if I don't use that particular portion, then it actually is not making sense for me, but that's not a limitation of Mend.io; I think that's a general problem with any tool in the market because no tool in the market will actually know what portion of the code I'm actually using from that particular library if it is vulnerable or not.
report
Use our free recommendation engine to learn which Application Security Tools solutions are best for your needs.
884,873 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
12%
Computer Software Company
12%
Manufacturing Company
10%
Government
7%
Computer Software Company
14%
Financial Services Firm
13%
Manufacturing Company
11%
Energy/Utilities Company
5%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business15
Midsize Enterprise7
Large Enterprise18
By reviewers
Company SizeCount
Small Business10
Midsize Enterprise3
Large Enterprise20
 

Questions from the Community

What is your primary use case for Acunetix Vulnerability Scanner?
I'm using Acunetix to automate security checks. Acunetix helped me catch common vulnerability issues early and improved the overall security posture of the application before development, specifica...
What advice do you have for others considering Acunetix Vulnerability Scanner?
I would advise anyone or any startup looking to engage in the security part to directly use Acunetix, as this will help in most aspects. I would rate this product a nine out of ten.
What is your experience regarding pricing and costs for Acunetix?
The experience with pricing, setup cost, and licensing has been that the setup cost and pricing need to be reconsidered.
How does WhiteSource compare with SonarQube?
Red Hat Ceph does well in simplifying storage integration by replacing the need for numerous storage solutions. This solution allows for multiple copies of replicated and coded pools to be kept, ea...
How does WhiteSource compare with Black Duck?
We researched Black Duck but ultimately chose WhiteSource when looking for an application security tool. WhiteSource is a software solution that enables agile open source security and license compl...
What is your experience regarding pricing and costs for Mend.io?
Mend.io SCA offers a competitive pricing structure that is relatively affordable compared to similar solutions in the market. This makes it an attractive option for organizations looking to enhance...
 

Comparisons

 

Also Known As

AcuSensor
WhiteSource, Mend SCA, Mend.io Supply Chain Defender, Mend SAST
 

Overview

 

Sample Customers

Joomla!, Digicure, Team Random, Credit Suisse, Samsung, Air New Zealand
Microsoft, Autodesk, NCR, Target, IBM, vodafone, Siemens, GE digital, KPMG, LivePerson, Jack Henry and Associates
Find out what your peers are saying about Acunetix vs. Mend.io and other solutions. Updated: March 2026.
884,873 professionals have used our research since 2012.