TrustRadius: an HG Insights company

Save this comparison

Save this comparison

Add Product

Recommended Comparisons

    Overview
    ProductRatingMost Used ByProduct SummaryStarting Price

    HCL AppScan

    Score7.2 out of 10
    N/AAppScan (formerly Rational AppScan) is an application security testing solution acquired by HCL Technologies from IBM in late 2018. Appscan supports both dynamic (DAST) and static (SAST) application security testing.N/A

    Travis CI

    Score7.3 out of 10
    N/ATravis CI is an open source continuous integration platform, that enables users to run and test simultaneously on different environments, and automatically catch code failures and bugs.

    $69

    per month 1 concurrent job

    Pricing
    HCL AppScanTravis CI
    Editions & Modules
    No answers on this topic
    1 Concurrent Job Plan
    $69
    per month
    Bootstrap
    $69
    per month 1 concurrent job
    2 Concurrent Jobs Plan
    $129
    per month
    Startup
    $129
    per month 2 concurrent jobs
    5 Concurrent Jobs Plan
    $249
    per month
    Small Business
    $249
    per month 5 concurrent jobs
    Premium
    $489
    per month 10 concurrent jobs
    Platinum
    $794+
    per month starting at 15 concurrent jobs
    Free Plan
    Free
    Offerings
    Pricing Offerings
    HCL AppScanTravis CI
    Free Trial
    YesYes
    Free/Freemium Version
    NoYes
    Premium Consulting/Integration Services
    NoNo
    Entry-level Setup FeeNo setup feeNo setup fee
    Additional Details—Discount available for annual pricing.
    More Pricing Information
    Community Pulse
    HCL AppScanTravis CI
    Considered Both Products
    HCLSoftware
    No answer on this topic
    Idera, Inc.
    No answer on this topic
    Key User Insights
    Would buy again
    100%
    Would buy again
    5 Answers
    No answers on this topic
    Delivers good value for the price
    No answers on this topic
    No answers on this topic
    Happy with the feature set
    100%
    Happy with the feature set
    5 Answers
    No answers on this topic
    Lived up to sales and marketing promises
    No answers on this topic
    No answers on this topic
    Implementation went as expected
    No answers on this topic
    No answers on this topic
    Best Alternatives
    HCL AppScanTravis CI
    Small Businesses
    No answers on this topic
    Apache Maven
    Score9.1 out of 10
    Medium-sized Companies
    No answers on this topic
    Apache Maven
    Score9.1 out of 10
    Enterprises
    No answers on this topic
    Gradle Build Tool (Open Source)
    Score9 out of 10
    All AlternativesView all alternativesView all alternatives
    User Ratings
    HCL AppScanTravis CI
    Likelihood to Recommend
    8.3
    (6 ratings)
    6.0
    (8 ratings)
    Usability
    -
    (0 ratings)
    5.0
    (1 ratings)
    Support Rating
    -
    (0 ratings)
    4.0
    (1 ratings)
    User Testimonials
    HCL AppScanTravis CI
    Likelihood to Recommend
    HCLSoftware
    In HCL AppScan automation maintain a reasonable pace of review and remediation of flaws for our apps. HCL AppScan is a cloud-based enterprise mobile application security testing solution for Android and iOS applications developed using Java, .Net or Objective-C. So it covers all our area and It consists of three components: AppScan Source Edition for developing and testing apps internally, AppScan Standard Edition for testing internally or externally, and AppScan Enterprise Edition for large enterprises who need to secure their entire mobile application portfolio across the organization with multiple device types.
    Incentivized
    Read full review
    Idera, Inc.
    TravisCI is suited for workflows involving typical software development but unfortunately I think the software needs more improvement to be up to date with current development systems and TravisCI hasn't been improving much in that space in terms of integrations.
    Incentivized
    Read full review
    Pros
    HCLSoftware
    • AppScan works well in finding application vulnerabilities such as SQL injection, cross-site scripting and all of the OWASP top 10.
    • Flexible reporting allows us to generate executive reports for application owners as well as separate technical reports for developers and system engineers.
    • Technical reports include remediation information and cross reference CVSS scores
    • Because it maintains data on all repeated assessments it helps us to do trending and metrics on compliance
    Incentivized
    Read full review
    Idera, Inc.
    • It is very simple to configure a range of environment versions and settings in a simple YAML file.
    • It integrates very well with Github, Bitbucket, or a private Git repo.
    • The Travis CI portal beautifully shows you your history and console logs. Everything is presented in a very clear and intuitive interface.
    Incentivized
    Read full review
    Cons
    HCLSoftware
    • It can have a FAQ session in the Application itself.
    • It can recommend the fix for the error that occurred during the scan.
    • Like its storing multiple manuals explore, It should have the capability of storing multiple logins.
    Incentivized
    Read full review
    Idera, Inc.
    • I think they could have a cheaper personal plan. I'd love to use Travis on personal projects, but I don't want to publish them nor I can pay $69 a month for personal projects that I don't want to be open source.
    • There is no interface for configuring repos on Travis CI, you have to do it via a file in the repo. This make configuration very flexible, but also makes it harder for simpler projects and for small tweaks in the configuration.
    Incentivized
    Read full review
    Usability
    HCLSoftware
    No answers on this topic
    Idera, Inc.
    TravisCI hasn't had much changes made to its software and has thus fallen behind compared to many other CI/CD applications out there. I can only give it a 5 because it does what it is supposed to do but lacks product innovation.
    Incentivized
    Read full review
    Support Rating
    HCLSoftware
    No answers on this topic
    Idera, Inc.
    After the private equity firm had bought this company the innovation and support has really gone downhill a lot. I am not a fan that they have gutted the software trying to make money from it and put innovation and product development second.
    Incentivized
    Read full review
    Alternatives Considered
    HCLSoftware
    Both solutions are decent, however, I had team members who had the experience working with HCL AppScan. Also, the product was priced nominally which suited our budget. Further, HCL AppScan's user community was bigger and many learning resources were freely available which helped junior peers learn quickly and eliminate any issues
    Incentivized
    Read full review
    Idera, Inc.
    Jenkins is much more complicated to configure and start using. Although, one you have done that, it's extremely powerful and full of features. Maybe many more than Travis CI. As per TeamCity, I would never go back to using it. It's also complicated to configure but it is not worth the trouble. Codeship supports integration with GitHub, GitLab and BitBucket. I've only used it briefly, but it seems to be a nice tool.
    Incentivized
    Read full review
    Return on Investment
    HCLSoftware
    • There are countless implementations to accomplish the same thing, and so many configurations are required.
    • Even if you test it finished and find no vulnerabilities, there is no point if you just get the error screen.
    • Until now, I was worried about vulnerabilities and security in software development, but I think it was good to find the vulnerability problem quickly with HCL AppScan.
    Incentivized
    Read full review
    Idera, Inc.
    • It's improved my ability to deliver working code, increasing my development velocity.
    • It increases confidence that your own work (and those of external contributors) does not have any obvious bugs, provided you have sufficient test coverage.
    • It helps to ensure consistent standards across a team (you can integrate process elements like "go lint" and other style checks as part of your build).
    • It's zero-cost for public/open source projects, so the only investment is a few minutes setting up a build configuration file (hence the return is very high).
    • The .travis.yml file is a great way for onboarding new developers, since it shows how to bootstrap a build environment and run a build "from scratch".
    Incentivized
    Read full review
    ScreenShots

    HCL AppScan Screenshots

    Screenshot of Cloud Security: AppScan will scan Docker containers and container images to ensure that third party components have not introduced vulnerabilities to an application. Software composition analysis (SCA) tools help organizations inventory third-party commercial and open source components used within their software to understand which components and versions are being used and to identify security vulnerabilities affecting those components.Screenshot of API Testing: This dangerous attack vector can be secured by identifying vulnerable third-party components, automating and integrating API testing and detecting issues in the IDE.Screenshot of Auto Issue Correlation: AppScan leverages three technologies (DAST, SAST, IAST) to enrich results, validate fixes and reduce the number remediation tasks by grouping issues together.Screenshot of 30+ Code Languages Supported: HCL AppScan offers an extensive list of supported code languages.