Software Alternatives & Reviews

Anchore VS StackRox

Compare Anchore VS StackRox and see what are their differences

Anchore logo Anchore

Achore offers end to end security and compliance tools to help deploy containers with confidence.

StackRox logo StackRox

StackRox provides an innovative and comprehensive solution with seamless integration for Kubernetes-native security that focuses on the container.
  • Anchore Landing page
    Landing page //
    2022-03-20
  • StackRox Landing page
    Landing page //
    2023-10-21

Anchore videos

Docker security with Anchore in 25 minutes (Tutorial-1)

StackRox videos

Kamal Shah, StackRox | Sumo Logic Illuminate 2019

Category Popularity

0-100% (relative to Anchore and StackRox)
Security
39 39%
61% 61
Monitoring Tools
36 36%
64% 64
Security Monitoring
54 54%
46% 46
Online Services
36 36%
64% 64

User comments

Share your experience with using Anchore and StackRox. For example, how are they different and which one is better?
Log in or Post with

Reviews

These are some of the external sources and on-site user reviews we've used to compare Anchore and StackRox

Anchore Reviews

The Top 5 Open Source Vulnerability Scanners
Anchore Engine is a tool that analyzes content to find hidden vulnerabilities and ensures adherence to industry security standards. Furthermore, this tool provides organizations with policy evaluations for the images it analyzes to determine how it measures up to organizational requirements. Once these are detected, Vulcan’s platform can help you to prioritize and fix...
Source: vulcan.io
7 Best Container Security Tools & Solutions 2022
Anchore is developer-centric, providing assistance to DevOps teams as they work to secure applications in their early stages. Anchore also offers two open-source container security tools: Syft, for generating SBOMs and viewing dependencies with the CLI tool, and Grype, for scanning container images and generating a list of vulnerabilities. Anchore also has a community Slack...

StackRox Reviews

7 Best Container Security Tools & Solutions 2022
StackRox users have compliance capabilities to identify whether nodes and clusters conform to regulations and to adhere to Docker and Kubernetes CIS benchmarks. StackRox makes it easier to show data to auditors, too. StackRox allows businesses to remediate misconfigurations, including excessive privileges, and to create custom policies for configuring builds and deployments.

Social recommendations and mentions

Based on our record, Anchore seems to be more popular. It has been mentiond 5 times since March 2021. We are tracking product recommendations and mentions on various public social media platforms and blogs. They can help you identify which product is more popular and what people think of it.

Anchore mentions (5)

  • An Overview of Kubernetes Security Projects at KubeCon Europe 2023
    Syft is a popular open source CLI tool created by Anchore for generating an SBOM from container images and filesystems. It’s designed to provide a catalog of dependencies for other tools to use as a data source. It supports many popular programming languages, package managers, and container image formats. - Source: dev.to / 12 months ago
  • SBOM management
    I saw https://fossa.com/ and https://anchore.com/ which seem to solve what I have in mind but I wanted to know if there's maybe an open source way of getting a better overview besides running trivy sbom everytime I want to know something about a given sbom file. Source: over 1 year ago
  • 🛡️ Docker image security scan automation with GH issues
    For docker image scan, we rely on the Container Scan (GitHub Action) maintained by Anchore. - Source: dev.to / almost 2 years ago
  • About Java Bytecode, native binaries & security (short Grype benchmark)
    Fortunately anchore provides a set of ready to use tools that helps... a lot :. - Source: dev.to / about 2 years ago
  • Security Vulnerability Scanning for Scala
    I use sbt-dependency-check and https://anchore.com/ too to scan my docker images. The results are loaded into sonar-scanner as a step in my CI pipeline. Source: almost 3 years ago

StackRox mentions (0)

We have not tracked any mentions of StackRox yet. Tracking of StackRox recommendations started around Mar 2021.

What are some alternatives?

When comparing Anchore and StackRox, you can also consider the following products

Qualys - Qualys helps your business automate the full spectrum of auditing, compliance and protection of your IT systems and web applications.

Snyk - Snyk helps you use open source and stay secure. Continuously find and fix vulnerabilities for npm, Maven, NuGet, RubyGems, PyPI and much more.

Lacework - Lacework is a highly trusted platform that provides security for Cloud Environments, DevOps, and Containers.

Trend Micro Deep Security - Excellent hybrid cloud security doesn't require your business to sacrifice operational performance. Trend Micro lets you keep business moving securely.

Sysdig - Sysdig is an open source, system-level exploration that capture system state and activity from a running Linux instance, then save, filter and analyze.

Symantec Cloud Workload Protection - Symantec Cloud Workload Protection enables business agility and cost savings by automating security for public cloud workloads. Visit Symantec to learn more.