Latest Research


This content is currently locked.

Your current Info-Tech Research Group subscription does not include access to this content. Contact your account representative to gain access to Premium SoftwareReviews.

Contact Your Representative
Or Call Us:
+1-888-670-8889 (US/CAN) or
+1-703-340-1171 (International)
Black Duck SCA Logo
Black Duck SCA Logo
Synopsys

Black Duck SCA

Composite Score
7.5 /10
CX Score
7.9 /10
Category
Black Duck SCA
7.5 /10

What is Black Duck SCA?

Black Duck software composition analysis (SCA) helps teams manage the security, quality, and license compliance risks that come from the use of open source and third-party code in applications and containers.

Company Details


Need Assistance?

We're here to help you with understanding our reports and the data inside to help you make decisions.

Get Assistance

Awards & Recognition

Black Duck SCA won the following awards in the Application Security Testing category

Black Duck SCA Ratings

Real user data aggregated to summarize the product performance and customer experience.
Download the entire Product Scorecard to access more information on Black Duck SCA.

Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.

91 Likeliness to Recommend

1
Since last award

82 Plan to Renew

18
Since last award

85 Satisfaction of Cost Relative to Value

4
Since last award


{y}
{name}

Emotional Footprint Overview

Product scores listed below represent current data. This may be different from data contained in reports and awards, which express data as of their publication date.

+91 Net Emotional Footprint

The emotional sentiment held by end users of the software based on their experience with the vendor. Responses are captured on an eight-point scale.

How much do users love Black Duck SCA?

9% Negative
0% Neutral
91% Positive

Pros

  • Helps Innovate
  • Continually Improving Product
  • Trustworthy
  • Unique Features

Feature Ratings

Average 77

Policy Engine and Enforcements

85

SDLC Integration

83

Software Composition Analysis (SCA)

82

Dynamic Application Security Testing (DAST)

81

Mobile Application Security Testing

78

Interactive Application Security Testing (IAST)

75

False Positive Remediation

75

Integrated Development Environment (IDE) plug-in

74

Risk Scoring

73

Static Application Security Testing (SAST)

72

Container Security Testing

72

Vendor Capability Ratings

Average 79

Ease of IT Administration

88

Ease of Data Integration

84

Availability and Quality of Training

83

Vendor Support

81

Business Value Created

81

Breadth of Features

80

Ease of Customization

79

Quality of Features

77

Product Strategy and Rate of Improvement

76

Ease of Implementation

74

Usability and Intuitiveness

70

Black Duck SCA Reviews

Adnan K.

  • Role: Information Technology
  • Industry: Engineering
  • Involvement: End User of Application
Validated Review
Verified Reviewer

Submitted Nov 2024

Black Duck - leader in application security testin

Likeliness to Recommend

10 /10

What differentiates Black Duck SCA from other similar products?

Real-Time Alerts and Notifications

What is your favorite aspect of this product?

snippet scanning

What do you dislike most about this product?

Higher Cost for Licensing and Deployment. Black Duck is often considered a premium solution, and its cost can be a barrier for smaller teams or companies. License costs can grow significantly with larger codebases and complex configurations.

What recommendations would you give to someone considering this product?

Synopsys software integrity group is now operating as an independent company - Black Duck. This product is no longer a part of Synopsys offering.

Pros

  • Enables Productivity
  • Trustworthy
  • Unique Features
  • Altruistic

Ram S.

  • Role: Information Technology
  • Industry: Engineering
  • Involvement: IT Development, Integration, and Administration
Validated Review
Verified Reviewer

Submitted Apr 2026

Comprehensive open source security tool

Likeliness to Recommend

8 /10

What differentiates Black Duck SCA from other similar products?

Strong focus on open source (SCA) security and license compliance Extensive vulnerability and component knowledge base Accurate detection of open source dependencies (including transitive)

What is your favorite aspect of this product?

Deep visibility into open source risks and licenses Reliable and accurate dependency detection Clear policy-based risk management

What do you dislike most about this product?

Setup and onboarding can be complex Scans may take time on large codebases UI can feel less intuitive in some areas

What recommendations would you give to someone considering this product?

Start with policy configuration before running scans Integrate early into CI/CD for better results Train teams on license compliance and security usage

Pros

  • Performance Enhancing
  • Inspires Innovation
  • Caring
  • Saves Time

Ajit J.

  • Role: Information Technology
  • Industry: Technology
  • Involvement: End User of Application
Validated Review
Verified Reviewer

Submitted Apr 2026

Great for Open-Source Risk Visibility

Likeliness to Recommend

9 /10

What differentiates Black Duck SCA from other similar products?

Its deep dependency and snippet scanning with strong SDLC integrations helps uncover risks that many basic SCA tools miss

What is your favorite aspect of this product?

quickly highlights vulnerable components and makes prioritization easier for the team.

What do you dislike most about this product?

Initial setup can feel a bit complex, and large scans may take extra time in bigger environments.

What recommendations would you give to someone considering this product?

teams working heavily with open-source libraries and looking for strong governance, SBOM visibility, and CI/CD security checks.

Pros

  • Continually Improving Product
  • Reliable
  • Performance Enhancing
  • Trustworthy

Most Popular Black Duck SCA Comparisons

Visit our IT’s Moment: A Technology-First Solution for Uncertain Times Resource Center
Over 100 analysts waiting to take your call right now: +1 (703) 340 1171