Black Duck Hub

Who Uses Black Duck Hub?

Jenkins, SonarQube, Artifactory, Nexus, Eclipse, Maven, Rational Team Concert Integration, Team City, IntelliJ IDEA

What Is Black Duck Hub?

Organizations worldwide use Black Duck Softwares industry-leading products to secure and manage open source software, eliminating the pain related to security vulnerabilities, open source license compliance and operational risk.
Black Duck is headquartered in Burlington, MA, and has offices in Mountain View, CA, London, Frankfurt, Hong Kong, Tokyo, Seoul and Beijing. For more information, visit www.blackducksoftware.com.

Black Duck Hub Details

Black Duck

http://www.blackducksoftware.com

Founded 2002

Black Duck Hub Pricing, Cost & Reviews - Capterra UAE 2020

Black Duck Hub does not have a free version but does offer a free trial. Black Duck Hub paid version starts at $5,000.00.

-thumb
-thumb

Starting Price

$5,000.00

Free Version

No

Free Trial

Yes

Deployment

Cloud, SaaS, Web

Installed - Windows

Training

Webinars

Documentation

Support

24/7 (Live Rep)

Business Hours

Online

Black Duck Hub Features

  • Anti Spam
  • Anti Virus
  • Audit Trail
  • Compliance Management
  • Database Security Audit
  • File Access Control
  • Financial Data Protection
  • Maintenance Scheduling
  • Real Time Monitoring
  • Security Event Log
  • Virus Definition Update
  • Vulnerability Protection

View full list of Computer Security Software

  • Audit Management
  • Compliance Tracking
  • Configuration Management
  • Contract/License Management
  • Cost Tracking
  • Inventory Management
  • Maintenance Management
  • Procurement Management
  • Requisition Management
  • Supplier Management

View full list of IT Asset Management Software

  • Copy Protection
  • License Tracking
  • Node Management
  • Portable License
  • Product Activation
  • Trial License

View full list of License Management Software

  • Bandwidth Monitoring
  • Baseline Manager
  • Dashboard
  • IP Address Monitoring
  • Internet Usage Monitoring
  • Network Diagnosis
  • Network Resource Management
  • SLA Monitoring
  • Server Monitoring
  • Uptime Monitoring
  • Web Traffic Reporting

View full list of Network Monitoring Software

  • Access Control
  • Activity Monitoring
  • Firewalls
  • Intrusion Detection System
  • Reporting/Analytics
  • Threat Response
  • VPN
  • Vulnerability Scanning

View full list of Network Security Software

Black Duck Hub Alternatives - Capterra UAE 2020

More Black Duck Hub alternatives

Black Duck Hub Reviews

Showing 5 of 28 reviews

Overall
4.2/5
Ease of Use
3.7/5
Customer Service
4.1/5
Features
4/5
Value for Money
3.8/5
Verified Reviewer
Consulting Partner, Cyber Security Delivery - Africa
Information Technology & Services, 2-10 Employees
Used the Software for: 1+ year
  • Overall Rating
    5/5
  • Ease of Use
    5/5
  • Features & Functionality
    5/5
  • Customer Support
    4/5
  • Value for Money
    5/5
  • Likelihood to Recommend
    10/10
  • Reviewer Source 
  • Source: GetApp
  • Reviewed on 10/04/2018

"Ease of Use and extensible integration availability"

Pros: The integrations points are quite very wide and cater to whatever type of CI/ CDthat you may want to use, also, the IDE integrations are quite easy to deploy, thereby not locking you into a corner if your DevOps team are fixed on one particular type of technologies. Also, the accuracy and detection capability seems to be very solid

Cons: not sure if there is something that i did not really like, maybe initially it did not have the code snippets, but that has been taken care of now ; giving the solution better capability and usage experience

  • Reviewer Source 
  • Source: GetApp
  • Reviewed on 10/04/2018
Rajiv A.
senior specialist cloud architect
Used the Software for: 6-12 months
  • Overall Rating
    5/5
  • Ease of Use
    5/5
  • Features & Functionality
    5/5
  • Customer Support
    3/5
  • Value for Money
    5/5
  • Likelihood to Recommend
    10/10
  • Reviewer Source 
  • Reviewed on 29/08/2017

"The ease of identifying and managing the open source code vulnerabilities and license risks."

Comments: Ease in identifying the security exposures and hidden vulnerabilities created by open source components.
Time to market is faster for identifying the vulnerabilities early during the development stage.
open source license management becomes so easy now.

Pros: The ease of identifying and managing the open source code and as well examining the source code for vulnerabilities and specifically the hidden security vulnerabilities is amazing. This is the product that every organization should look out to manage the source code for identifying quickly about vulnerabilities, open source code license management which can be lethal if ignored. Easily integrates with your current CI engines and sets the pace for your time to market. Ease in identifying the security exposures and hidden vulnerabilities created by open source components.
Time to market is faster for identifying the vulnerabilities early during the development stage.
open source license management becomes so easy now.
The product is really amazing already. Hub knowledge bases are huge and growing day by day.

Cons: Improve in reporting, and better API experience. Black Duck is a duckling and is growing fast.Suggest black duck to update the KBs quickly.

  • Reviewer Source 
  • Reviewed on 29/08/2017
Pete T.
Infrastructure & Security Manager
Banking, 1,001-5,000 Employees
Used the Software for: 6-12 months
  • Overall Rating
    3/5
  • Ease of Use
    3/5
  • Features & Functionality
    3/5
  • Customer Support
    2/5
  • Value for Money
    2/5
  • Likelihood to Recommend
    7/10
  • Reviewer Source 
  • Reviewed on 26/07/2017

"Great software which I believe in, but not a pain free experience."

Comments: Ability to detect open source vulnerabilities in our code.

Pros: Ability to detect open source vulnerabilities in our code. Pre-sales contact & support was good (demo, trial etc). Clean interface. Performance improved in v4.0.0.

Cons: Difficult installation process, made more complicated with the introduction of Docker in v4.0.0 & with introduction of mandatory SSL/TLS web server certificate which requires troubleshooting trust issues. Support team are reluctant to pick up the phone or enter into telephone support, with sporadic email communication being the favoured option. Some gaps in documentation. Why is there no pre-built Black Duck Hub virtual appliance that I can drop into VMware? No documentation for implementing with vSphere Integrated Containers (VIC), only documentation for Docker & Openshift. Reporting improvements still to be made.

Vendor Response

by Black Duck on 31/07/2017

Thank you for providing feedback about your experience with Black Duck Hub. We¿re so sorry you are having issues ¿ and we¿d like to work together to fix that. We have escalated your case so that we can resolve it quickly.

Our customer support team strives to provide support in the way that works best for you, so we noted in your account that you prefer to be reached via phone. A senior support representative will reach out to you via phone.

Many of the issues you experienced during deployment were due to our old AppMgr architecture. The new Docker deployment is a more stable environment built to fix many of the issues you experienced. The Docker deployment can be harder to implement and run the first time; our senior support representative will be guiding you through this process. We will do better next time you have an issue; please escalate any issues you have to your Customer Success Manager.

  • Reviewer Source 
  • Reviewed on 26/07/2017
Marco I.
System Analyst
Computer Software, 1,001-5,000 Employees
Used the Software for: 1-5 months
  • Overall Rating
    5/5
  • Ease of Use
    5/5
  • Features & Functionality
    4/5
  • Customer Support
    5/5
  • Value for Money
    5/5
  • Likelihood to Recommend
    10/10
  • Reviewer Source 
  • Reviewed on 30/09/2017

"Using Black Duck HUB for Open Source Governance in software projects."

Comments: We are working in improving Open Source Culture in our Company and Customers: Black Duck HUB is a very good tool for awareness about legal, security and operational risks in using Open Source Components.

Pros: We are working in improving Open Source Culture in our Company and Customers: Black Duck HUB is a very good tool for awareness about legal, security and operational risks in using Open Source Components.
A very good thing is that it provide features for code scanning, independently from language and technology, also integrated with CI/CD tools like Jenkins.
The GUI is very easy to use and intuitive, the dashboard give a lot of information about Open Source Components in the project and you can take advantage of notification about new vulnerability.
In the latest versions Back Duck Hub is also improved in remediation suggestions about vulnerability.
Black Duck provide also good reports and you can customize it using restful API and direct access to a Report Database.
What is more it is really easy to install, we use the docker compose version: just install Docker, download images and run a command to set up the environment or upgrade to a new version!
Last but not least the technical support and customer care is really good.

Cons: Black Duck HUB is a quite new product, despite it has very famous and consolidate ancestors like Protex. So some features can improve and better meet users needs, especially about reports and API. Also documentation can improve .

  • Reviewer Source 
  • Reviewed on 30/09/2017
Emmanuel C.
Project Manager, Technology
Used the Software for: 6-12 months
  • Overall Rating
    5/5
  • Ease of Use
    5/5
  • Features & Functionality
    4/5
  • Customer Support
    5/5
  • Value for Money
    3/5
  • Likelihood to Recommend
    Unrated
  • Reviewer Source 
  • Reviewed on 25/07/2017

"Excellent open source governance tool!"

Pros: I love the speed and overall simplicity of the application. It does a good job of finding most open source packages and performs identification automatically. It is very useful to see where a component is being used across my organization, as well as see other factors beyond license risk like security and operational risk.

Cons: The application is expensive due to the billing model that enforces a quota on amount of code scanned. This disincentivizes me to use the application when I would ordinarily want to scan as much of my code as possible due to its ease of use. It has fewer features when compared to Protex, but Black Duck is slowly resolving this.

Vendor Response

by Black Duck on 28/08/2017

Thank you for your feedback, we love hearing from our customers. You are correct ¿ Hub features are continually improved and we hope you are staying up to date and enjoying the new features. We have been working hard to close the gap on feature differences, and most will be available in Hub by end of the year. Additionally, Hub has many features not available in Protex, including showing security vulnerabilities. If you haven¿t already checked it out, check out one of our favorite new features in this video (https://www.youtube.com/watch?v=_4v2WwVQs1I) ¿ Hub Detect!

  • Reviewer Source 
  • Reviewed on 25/07/2017