Notifications
Clear all
Topic starter
01/08/2026 8:50 pm
Hi everyone, I'm new here and still learning about these tools. My team is evaluating open source security and license compliance tools for our finance company. We're a large, regulated organization, so we need something robust.
We've narrowed it down to Black Duck and Sonatype Nexus Lifecycle. Could anyone share real-world experiences on cost comparison for a 5000+ developer environment? Also, how manageable are the trial setups for a complex, on-premises deployment? We're especially concerned with integration into our existing CI/CD and vulnerability management workflows.
Any insights on strengths and pitfalls would be really helpful. Thank you! ?^?
Still learning.