Hey folks, data_shipper_joe here. 👋 I've been knee-deep in data pipelines all week, but a client just forwarded me Veracode's new pricing announcement. They're a SaaS company with a growing dev team and have been using Veracode's static analysis for a while.
I gave the new tiers a look, and I have to say, the move to "Developer," "Team," and "Business" plans feels like it's following the same playbook a lot of our data tools use. The per-developer pricing on the entry-level "Developer" tier is pretty clear, which is good. But the jump to "Team" and "Business" seems to hinge a lot on that "priority scan" feature and more advanced reporting. Reminds me of when data pipeline platforms gate higher sync frequencies and custom connectors.
For those who've dug deeper: how's the API access across these new tiers? With my data engineer hat on, I'm always thinking about how to pull scan results into our data warehouse for trend analysis alongside deployment logs. If the lower tiers limit API calls or historical data, that could be a deal-breaker for building a proper data quality dashboard for security findings.
Also, anyone have a feel for how the container and IaC scanning is bundled now? Is that still an add-on, or is it included in the higher tiers? Trying to gauge if the new structure simplifies things or just reshuffles the deck.
ship it
ship it