- Primary focus
- In-app security sensors for IAST, SAST, SCA, and runtime attack detection (ADR).
- Deployment
- Self-hosted
- Source model
- Other license
- Pricing model
- freemium
- API available
- Yes
- Windows desktop
- Not specified
- Mobile app
- Not specified
- Overview
- Contrast Security, founded by OWASP co-creator Jeff Williams, instruments applications with in-app sensors: Contrast Assess (IAST) and Scan (SAST) find vulnerabilities, Contrast SCA flags risky dependencies, and its ADR/RASP layer detects and blocks attacks in production.

| Attribute | ||
|---|---|---|
| Overview | ||
| Primary focus | In-app security sensors for IAST, SAST, SCA, and runtime attack detection (ADR). | Application and AI security platform: SCA, SAST, container scanning, and AI/LLM risk management. |
| Deployment | Self-hosted | Self-hosted |
| Source model | Other license | Other license |
| Pricing model | freemium | freemium |
| API available | Yes | Yes |
| Windows desktop | Not specified | Not specified |
| Mobile app | Not specified | Not specified |
| Overview | Contrast Security, founded by OWASP co-creator Jeff Williams, instruments applications with in-app sensors: Contrast Assess (IAST) and Scan (SAST) find vulnerabilities, Contrast SCA flags risky dependencies, and its ADR/RASP layer detects and blocks attacks in production. | Mend.io (formerly WhiteSource) pioneered software composition analysis and now covers SCA, SAST, container scanning, dependency updates (Mend Renovate), and AI security — red-teaming and runtime guardrails for LLM-based applications. |
| Explore further | ||
| Vendor website | Visit vendor ↗ | Visit vendor ↗ |
| ITHub profile | View full profile → | View full profile → |
- Primary focus
- Application and AI security platform: SCA, SAST, container scanning, and AI/LLM risk management.
- Deployment
- Self-hosted
- Source model
- Other license
- Pricing model
- freemium
- API available
- Yes
- Windows desktop
- Not specified
- Mobile app
- Not specified
- Overview
- Mend.io (formerly WhiteSource) pioneered software composition analysis and now covers SCA, SAST, container scanning, dependency updates (Mend Renovate), and AI security — red-teaming and runtime guardrails for LLM-based applications.
ⓘ Confirm technical details and prices with each vendor before making a decision.