Top Rated Detectify Alternatives
51 Detectify Reviews
Overall Review Sentiment for Detectify
Log in to view review sentiment.
The Deep Scan was impressively easy to use once I got through the asset verification process. The scan itself took a long time (about 7 hours), but I was very pleased to see all of the vulnerabilities laid out clearly and ranked by severity.
As a nonprofit organization where I am the only person managing the website, this is a game-changer in terms of securing our web presence. The Deep Scan showed vulnerabilities that I never would have known about without it. I also appreciate that each vulnerability links to more information, giving me the best possible chance to fix these issues on my own. Review collected by and hosted on G2.com.
I had a little trouble getting verified at the beginning and the instructions weren't very helpful on how to use a DNS text record (more specifically, I didn't know to use "@" under host so it wasn't working properly). Maybe that is because the target audience should already know how to do this?
I'm not a developer (although I do have some programming experience), so I'm not 100% certain I will be able to make all of the necessary changes. I could see that being an issue for other organizations that lack a person with any technical know-how. Review collected by and hosted on G2.com.
The digest emails when Detectify finishes scanning my products. It's super easy to look and see the status of them in the morning. Review collected by and hosted on G2.com.
The stress added to our servers. When running a scan, it makes tens of thousands of requests on our servers. Maybe it's a misconfiguration, but we needed to downsize the frequency from once a day to once a week. Review collected by and hosted on G2.com.
I'm going to give a summary of the best features :
* Good Product, that is able to provide interesting results ;
* Good and interesting Features ;
* Fast improvements into the Platform ;
* The UI is vert friendly and confortable, with a good look and feel ;
* The Service Support is very good ;
* The scans are easy to configure and to be maintained ;
* There are a few option to perform authenticated scans, this is great ;
* The on-boarding of the assets it's very fast and clear ; Review collected by and hosted on G2.com.
The maturity level of the tool is not great, there are some customisation and feature to facilitate the Customer interaction with the tool that are missing, for example :
* Change or define the Risk ranting ;
* Make particular filter using logical operators as OR,AND,INCLUDE,EXCLUDE,NOT are missing ;
* The tagging have been recently added but something is still tricky ;
* It is not possible give the acknowledge for the findings ;
* It is not possible to define an issue as Risk Accepted ;
* The pause/resume option is missing ;
* There isn't the option to have a continuous scan mode, with the option to configure pauses periods (for example do not scan between 8 to 9) ;
* A global scheduler to define the scans default configuration is missing ;
* It is not possible to create scan configuration templates to be applied to the assets ; Review collected by and hosted on G2.com.
Detectify is a very well performing vulberability scanner.
The simplicity how it works and the many checks that are done when performing a deep scan.
Very light weight and very good.
The interface is very intuitive and there are many many integrations possible with Trello, E-mail, Jira, opsGenie, Paperduty, Zapier, webhooks, splunk, now, API Review collected by and hosted on G2.com.
It's not possible to create teams when not having the enterprise subscription. This ends up in a problem that every single team member is emailed when a scan is finished. That's not needed at all. It would be very nice to have this as a key feature in all the subscriptions. Beside that it is now impossible to add a client user in the team because he can see all of the other scan results as well. This is not very nice and it would also therefore be nice that Teams will be a default feature. For us this was the only reason to question the use of Detectify. Review collected by and hosted on G2.com.
Gets the job done. Deep scan is a good feture but i like the Surface Monitor more. Review collected by and hosted on G2.com.
Bad user interface, needs a rework to make it cleaner and easier to use Review collected by and hosted on G2.com.

How easy is it to configure our scan capabilities and our website. Additionally how easy it is to view a report and take actions on top of it. Overall Detectify is a good friend that helps us to perform better and never run behind of best security practices Review collected by and hosted on G2.com.
I miss a feature to validate REST APIs which nowadays is a pattern everywhere. Review collected by and hosted on G2.com.
Its easy to use and reports on relevant vulnerabilities. There are little false positives. It is great that you must verify ownership of a domain first. The web-interface works well and looks great on mobile phones. Great that the tools integrates with slack etc. I also like the crawler and that you can download the crawled URLs. Detectify is great at sorting out duplicates. When it comes to reporting, the tool groups the findings very well, makes it very easy to navigate. Review collected by and hosted on G2.com.
Difficult to change subdomains/profiles to scan.
All subdomains of a domain should be included in the profile, because it shouldn't matter whether a website puts their content on www.example.com/application1 or application1.example.com.
It would have been great if it was possible to download a log of all requests sent. That way it would be easier to troubleshoot and use the tool for further manual pentesting.
Would be great if Detectify was a little bit more tunable. There are little configuration options compared to other tools in the market. A more advanced configuration should be possible where one can tune. Review collected by and hosted on G2.com.
Asset Monitor allows me to know what I'm exposing to the internet. It also spots new vulnerabilities as soon as they are released.
Also, with deep scan I can schedule an in-depth analysis of a specific asset.
In my opinion, It doesn´t replace Ethical Hacking, but it does excellent work maintaining a great secure posture. Review collected by and hosted on G2.com.
Lack of on-premise version: It would be great to have the ability to scan internal networks Review collected by and hosted on G2.com.
It's automated and doesn't require much manual work. Always keeps up to date with new vulnerabilities due to Bug Bounty programmes etc.
Easily set-up, light weight and the scan profiles have highly customizable scan patterns and options.
Very thorough scanning with extensive crawling.
Beautiful web-GUI that is continously updated. It also has a lot of integrations.
A lot cheaper than hiring red team consultants, even though it doesn't replace them, Detectify provides regular check-ups on our sites.
Swedish company Review collected by and hosted on G2.com.
Team- and user access structure needs some work, it is hard to manage a large organization with many teams. No overview feature for administrators, you have to manage every team separately.
Reporting feature could also need some improvements, it is very extensive to the point that it contains almost too much information. I would like a report of all scan profiles to get the "overall security posture" kind of view. Review collected by and hosted on G2.com.

Detectify provides a powerful tool that I recommend to all of my clients for ensuring that their web site and online presence is secured. While nothing will replace a true penetration test; Detectify provides a great weekly scan to ensure that your web site is secured against the most common threats. It has an easy to use interface, reporting that is interpretable by both the technical and non-technical alike, and best of all - it's affordable for what you get! Review collected by and hosted on G2.com.
Detectify does its' own testing, as well as has a crowdsourced model to add things to its scanning platform. While it is very comprehensive, and I'm nit-picking here, but I don't know anyone who wouldn't want to see more added. They update it almost weekly as it is - but more detections, the better!! Keep up the excellent work, Detectify! Review collected by and hosted on G2.com.