No more typing reviews! Try our Samantha, our new voice AI agent.

Cloudify vs Snyk comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

Cloudify
Ranking in Cloud Management
40th
Average Rating
8.0
Reviews Sentiment
7.2
Number of Reviews
12
Ranking in other categories
No ranking in other categories
Snyk
Ranking in Cloud Management
13th
Average Rating
8.2
Reviews Sentiment
7.3
Number of Reviews
51
Ranking in other categories
Application Performance Monitoring (APM) and Observability (21st), Application Security Tools (8th), Static Application Security Testing (SAST) (6th), GRC (5th), Vulnerability Management (19th), Container Security (7th), Software Composition Analysis (SCA) (3rd), Software Development Analytics (2nd), Cloud Security Posture Management (CSPM) (17th), DevSecOps (3rd), Application Security Posture Management (ASPM) (2nd), AI Security (9th)
 

Mindshare comparison

As of May 2026, in the Cloud Management category, the mindshare of Cloudify is 1.6%, down from 1.8% compared to the previous year. The mindshare of Snyk is 1.8%, up from 0.5% compared to the previous year. It is calculated based on PeerSpot user engagement data.
Cloud Management Mindshare Distribution
ProductMindshare (%)
Snyk1.8%
Cloudify1.6%
Other96.6%
Cloud Management
 

Featured Reviews

Mark Wittling - PeerSpot reviewer
Cloud Architect at Cox communications
Works very well for advanced service chaining requirements and has extremely advanced engineers for support
We had a manager who thought that Cloudify could be used as a replacement for Horizon in OpenStack, but we found that Cloudify lacked the user interface or GUI for doing multitenancy and basic platform management tasks. Cloudify was really good at launching, for example, firewalls and configuring them and doing service chaining and rather advanced things like that, but it didn't meet the requirements for a basic platform management solution. It is something that seems to work better as a bolt-on or an augmented solution. It is a bit mis-marketed as a Cloud Management solution. It is not that. It is more of a service orchestration and automation tool. It is very good at doing that, but it fails to meet basic platform management requirements. Once you have it running, you can't really do anything with it without writing code and scripts. It requires a full-time DevOps person to use it. We deployed a Palo Alto firewall with it. That's basically what the project was for us, and it worked flawlessly once we got it finished, but it took another 12 weeks to get all of the automation and everything else coded, tested, and working. There is certainly a place for this technology, but when we got rid of OpenStack and moved to VMware, we either had to go with the vRealize Automation Suite to do this kind of automation, or we had to find an alternative solution to manage the private cloud. So, we put Cloudify in, but we really couldn't find it useful for basic platform administration tasks.
Abhishek-Goyal - PeerSpot reviewer
Software Engineer at a computer software company with 11-50 employees
Improves security posture by actively reducing critical vulnerabilities and guiding remediation
Snyk's main features include open-source vulnerability scanning, code security, container security, infrastructure as code security, risk-based prioritization, development-first integration, continuous monitoring and alerting, automation, and remediation. The best features I appreciate are the vulnerability checking, vulnerability scanning, and code security capabilities, as Snyk scans all open-source dependencies for known vulnerabilities and helps with license compliance for open-source components. Snyk integrates into IDEs, allowing issues to be caught as they appear in the code dynamically and prioritizes risk while providing remediation advice. Snyk provides actionable remediation advice on where vulnerabilities can exist and where code security is compromised, automatically scanning everything and providing timely alerts. Snyk has positively impacted my organization by improving the security posture across all software repositories, resulting in fewer critical vulnerabilities, more confidence in overall product security, and faster security compliance for project clients. Snyk has helped reduce vulnerabilities significantly. Initially, the repository had 17 to 31 critical and high vulnerabilities, but Snyk has helped manage them down to just five vulnerabilities, which are now lower and not high or critical.

Quotes from Members

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Pros

"Has great extendability which means you can build your own custom logic."
"This is a somewhat complex solution for very complex use cases where there are multiple cloud vendors, multiple infrastructures, and multiple configurations."
"It enables a single platform to communicate with the entire infrastructure."
"The solution includes the option to run background scripts and processes from a connected API."
"Cloudify provides the infrastructure-as-code, as well as operational action capabilities (orchestrated startups or upgrades, and more)."
"TOSCA model allows modeling the application rather than the automation. It is a machine-readable representation of the application and its infrastructure, which can be used for other things too, not just for the orchestration (e.g. enterprise architecture big picture, who connects to whom)."
"No need to change the existing application code base."
"The TOSCA model allows modeling the application rather than the automation, providing a machine-readable representation of the application and its infrastructure that can also be used for the enterprise architecture big picture, showing who connects to whom."
"The code scans on the source code itself were valuable."
"The solution has great features and is quite stable."
"Snyk has given us really good results because it is fully automated."
"It has improved our vulnerability rating and reduced our vulnerabilities through the tool during the time that we've had it."
"From a compliance and visibility reporting perspective, the fact that it can be applicable for multi-cloud environments is very helpful."
"We have hundreds of source code repositories, and Snyk scans them in minutes (it just looks at package management files to identify the dependency tree), Snyk uses the same infrastructure to scan for all customers on the cloud which gives it lots of scalability opportunities compared to some other vendors where the software is installed on-prem or on a dedicated instance which makes the software pricy and limited."
"Our overall security has improved. We are running fewer severities and vulnerabilities in our packages. We fixed a lot of the vulnerabilities that we didn't know were there."
"There are many valuable features. For example, the way the scanning feature works. The integration is cool because I can integrate it and I don't need to wait until the CACD, I can plug it in to our local ID, and there I can do the scanning. That is the part I like best."
 

Cons

"The solution could be improved with respect to error handling. If we want to troubleshoot further and deep dive, we don't have access to admin privileges to extract those errors."
"The upgrading process could be simplified."
"I did encounter any issues with scalability."
"It lacked the user interface for multitenancy and basic platform management tasks. It is a leader in the niche area that they like to perform in, but it only does about 30% of top-tier advanced functions of platform management. It doesn't meet about 70% of what you need to manage a private cloud platform."
"Unlike the Docker environment, Cloudify takes time for configuration and its learning curve."
"We'd like to see the maturity of the plugins continue, including Amazon EMR and others."
"The solution is a bit of a headache because mistakes happen in the blueprint every time we deploy and they require modifications."
"Certainly the UI could use some intensive work, but nevertheless, overall, it’s a complete product with its 3.4 version and much better features are available with 4.0."
"There are some new features that we would like to see added, e.g., more visibility into library usage for the code. Something along the lines where it's doing the identification of where vulnerabilities are used, etc. This would cause them to stand out in the market as a much different platform."
"All such tools should definitely improve the signatures in their database. Snyk is pretty new to the industry."
"Then there's the issue of their support. It's not very good, to be honest, and it hasn't been the best experience to deal with them."
"The general input I have is that there is an opportunity for them to better align with other similar tools and better align with similar capabilities that cloud suppliers deliver natively."
"We've also had technical issues with blocking newly introduced vulnerabilities in PRs and that was creating a lot of extra work for developers in trying to close and reopen the PR to get rid of some areas. We ended up having to disable that feature altogether because it wasn't really working for us and it was actually slowing down developer velocity."
"Scalability has some issues because we have a lot of code and its use is mandatory. Therefore, it can be slow at times, especially because there are a lot of projects and reporting. Some UI improvements could help with this."
"It would be great if they can include dynamic, interactive, and run-time scanning features. Checkmarx and Veracode provide dynamic, interactive, and run-time scanning, but Snyk doesn't do that. That's the reason there is more inclination towards Veracode, Checkmarx, or AppScan. These are a few tools available in the market that do all four types of scanning: static, dynamic, interactive, and run-time."
"Although Snyk is strong, sometimes it flags vulnerabilities that are not reachable, not exploitable, and not relevant to a project."
 

Pricing and Cost Advice

"I wasn't involved in the pricing of it because we were just doing prototype work with it, but I was told by the upper management team that it was quite expensive. That was another reason we switched to Morpheus."
"Snyk is an expensive solution."
"The price of the solution is expensive compared to other solutions."
"It's inexpensive and easy to license. It comes in standard package sizing, which is straightforward. This information is publicly found on their website."
"Presently, my company uses an open-source version of the solution. The solution's pricing can be considered quite reasonable owing to the features they offer."
"With Snyk, you get what you pay for. It is not a cheap solution, but you get a comprehensiveness and level of coverage that is very good. The dollars in the security budget only go so far. If I can maximize my value and be able to have some funds left over for other initiatives, I want to do that. That is what drives me to continue to say, "What's out there in the market? Snyk's expensive, but it's good. Is there something as good, but more affordable?" Ultimately, I find we could go cheaper, but we would lose the completeness of vision or scope. I am not willing to do that because Snyk does provide a pretty important benefit for us."
"Snyk is a premium-priced product, so it's kind of expensive. The big con that I find frustrating is when a company charges extra for single sign-on (SSO) into their SaaS app. Snyk is one of the few that I'm willing to pay that add-on charge, but generally I disqualify products that charge an extra fee to do integrated authentication to our identity provider, like Okta or some other SSO. That is a big negative. We had to pay extra for that. That little annoyance aside, it is expensive. You get a lot out of it, but you're paying for that premium."
"On a scale of one to ten, where one is cheap and ten is expensive, I rate the pricing a three. It is a cheap solution."
"For what Snyk offers, it has the best cost-benefit I have ever seen because you're buying the license per user."
report
Use our free recommendation engine to learn which Cloud Management solutions are best for your needs.
893,221 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Comms Service Provider
12%
Computer Software Company
10%
Performing Arts
7%
Outsourcing Company
7%
Financial Services Firm
14%
Computer Software Company
10%
Manufacturing Company
9%
Comms Service Provider
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
By reviewers
Company SizeCount
Small Business3
Large Enterprise6
By reviewers
Company SizeCount
Small Business21
Midsize Enterprise9
Large Enterprise22
 

Questions from the Community

Ask a question
Earn 20 points
How does Snyk compare with SonarQube?
Snyk does a great job identifying and reducing vulnerabilities. This solution is fully automated and monitors 24/7 to find any issues reported on the internet. It will store dependencies that you a...
What needs improvement with Snyk?
There are a lot of false positives that need to be identified and separated. The inclusion of AI to remove false positives would be beneficial. So far, I've not seen any AI features to enhance vuln...
What is your primary use case for Snyk?
I use Snyk ( /products/snyk-reviews ) in the DevOps pipeline to identify vulnerabilities before deploying the application. It integrates with Jenkins ( /products/jenkins-reviews ).
 

Comparisons

 

Also Known As

No data available
Fugue, Snyk AppRisk
 

Overview

 

Sample Customers

Proximus Partner Communications (Israel) VMware NTT Data Metaswitch Spirent Communications Lumina Networks Atos Fortinet
StartApp, Segment, Skyscanner, DigitalOcean, Comic Relief
Find out what your peers are saying about Cloudify vs. Snyk and other solutions. Updated: April 2026.
893,221 professionals have used our research since 2012.