Try our new research platform with insights from 80,000+ expert users

GitHub Dependabot vs Prisma Cloud by Palo Alto Networks comparison

 

Comparison Buyer's Guide

Executive SummaryUpdated on Jan 11, 2026

Review summaries and opinions

We asked business professionals to review the solutions they use. Here are some excerpts of what they said:
 

Categories and Ranking

GitHub Dependabot
Average Rating
8.0
Reviews Sentiment
4.6
Number of Reviews
1
Ranking in other categories
Software Supply Chain Security (8th)
Prisma Cloud by Palo Alto N...
Average Rating
8.4
Reviews Sentiment
7.1
Number of Reviews
114
Ranking in other categories
Web Application Firewall (WAF) (9th), Container Security (2nd), Cloud Security Posture Management (CSPM) (2nd), Cloud-Native Application Protection Platforms (CNAPP) (2nd), Data Security Posture Management (DSPM) (2nd)
 

Mindshare comparison

GitHub Dependabot and Prisma Cloud by Palo Alto Networks aren’t in the same category and serve different purposes. GitHub Dependabot is designed for Software Supply Chain Security and holds a mindshare of 4.8%, down 10.4% compared to last year.
Prisma Cloud by Palo Alto Networks, on the other hand, focuses on Cloud-Native Application Protection Platforms (CNAPP), holds 12.4% mindshare, down 18.9% since last year.
Software Supply Chain Security Mindshare Distribution
ProductMindshare (%)
GitHub Dependabot4.8%
JFrog Xray12.7%
Mend.io9.3%
Other73.2%
Software Supply Chain Security
Cloud-Native Application Protection Platforms (CNAPP) Mindshare Distribution
ProductMindshare (%)
Prisma Cloud by Palo Alto Networks12.4%
Wiz17.4%
Microsoft Defender for Cloud8.9%
Other61.300000000000004%
Cloud-Native Application Protection Platforms (CNAPP)
 

Featured Reviews

BB
Full Stack Developer at Accenture India Pvt. Ltd.
Automated security checks have streamlined dependency updates and reduce manual review work
The best features in GitHub Dependabot include its use for vulnerabilities, and most of the things we use it for involve creating pull requests for those dependencies, which is why it is so appealing for customers. The configuration options in GitHub Dependabot have greatly helped me tailor operations to meet my project's needs. We used the YAML file to configure everything, and we use what is called the actions environment, a GitHub environment. We use GitHub environment to configure the confidential data.
reviewer2776578 - PeerSpot reviewer
Cyber Security Architect at a comms service provider with 10,001+ employees
Image scanning has supported consistent security practices during cloud deployment
On a scale of ten, we would say people are happy with Prisma Cloud by Palo Alto Networks for the part we use. People are okay with it. We probably would give an eight. We don't give ten because if we don't use the other parts of Prisma Cloud by Palo Alto Networks, it's because it was difficult to implement from an operational point of view. We could have deployed the runtime monitoring with Prisma Cloud by Palo Alto Networks, but within our organization at our company, it was very difficult to find who would be the owner for the alerts. People have other tools and in the end, we don't use the full capabilities of a product that we pay for. It's partially related to the difficulty to integrate Prisma Cloud by Palo Alto Networks runtime in our company's support process. We don't use the real-time monitoring part of Prisma Cloud by Palo Alto Networks. We don't know about the automated remediation feature of Prisma Cloud by Palo Alto Networks.
report
Use our free recommendation engine to learn which Software Supply Chain Security solutions are best for your needs.
884,873 professionals have used our research since 2012.
 

Top Industries

By visitors reading reviews
Financial Services Firm
17%
Manufacturing Company
11%
Insurance Company
7%
Computer Software Company
7%
Financial Services Firm
15%
Computer Software Company
10%
Manufacturing Company
9%
Government
6%
 

Company Size

By reviewers
Large Enterprise
Midsize Enterprise
Small Business
No data available
By reviewers
Company SizeCount
Small Business37
Midsize Enterprise22
Large Enterprise56
 

Questions from the Community

What needs improvement with GitHub Dependabot?
I do not think there is anything that could be improved about the solution.
What is your primary use case for GitHub Dependabot?
My overall experience with GitHub Dependabot has been positive. When GitHub Dependabot was introduced in 2017, we did not consider it much at that time. However, in 2021, we started working with it...
What advice do you have for others considering GitHub Dependabot?
I do not use GitHub Dependabot compatibility testing; I do not use this feature. My overall review rating for this product is eight.
What is your primary use case for Prisma Cloud by Palo Alto Networks?
Prisma Cloud helps support DevSecOps methodologies, making those responsibilities easier to manage.
What Cloud-Native Application Protection Platform do you recommend?
We like Prisma Cloud by Palo Alto Networks, since it offers us incredible visibility into our entire cloud system. We are able to easily see where our container vulnerabilities lie and and where cl...
What do you think of Aqua Security vs Prisma Cloud?
Aqua Security is easy to use and very manageable. Its main focus is on Kubernetes and Docker. Security is a very valuable feature and their speed of integration is very good. The initial setup was ...
 

Also Known As

No data available
Prisma Public Cloud, RedLock Cloud 360, RedLock, Twistlock, Aporeto
 

Overview

 

Sample Customers

Information Not Available
Amgen, Genpact, Western Asset, Zipongo, Proofpoint, NerdWallet, Axfood, 21st Century Fox, Veeva Systems, Reinsurance Group of America
Find out what your peers are saying about Docker, JFrog, Qualys and others in Software Supply Chain Security. Updated: March 2026.
884,873 professionals have used our research since 2012.