# Anchore Enterprise vs Aqua Security

| Attribute | Anchore Enterprise | Aqua Security |
|---|---|---|
| **Vioscale score** | 12 (15% (low)) | 47 (26% (low)) |
| deployment.options | `{"cloud":true,"hybrid":true,"on_prem":true,"self_hosted":true}` | `{"cloud":true,"hybrid":true,"on_prem":true,"self_hosted":true}` |
| description.long | Platform for scanning containers, filesystems, and source code to generate SBOMs, detect vulnerabilities, and enforce security policies. Helps organizations demonstrate compliance with regulatory standards and automate secure software development practices. | Aqua Security is the pioneer in cloud native security, offering a Cloud Native Application Protection Platform (CNAPP) that secures containerized applications from development to production. The platform integrates agent and agentless technology to prevent attacks through pre-deployment enforcement and real-time runtime protection. |
| features.capabilities | - | `{"ciem":false,"cspm":true,"cwpp":true,"dspm":false,"kspm":true,"iac_scanning":true,"cloud_coverage":"AWS, Azure, GCP, Oracle, Alibaba Cloud","deployment_model":"cloud_managed_cnapp","open_core_scanner":true,"agentless_scanning":true,"runtime_protection":true,"network_microsegmentation":true,"ci_cd_pipeline_build_blocking":true,"ebpf_runtime_syscall_monitoring":true,"kubernetes_kspm_security_posture":true,"serverless_lambda_fargate_support":true,"container_drift_prevention_blocking":true,"infrastructure_as_code_iac_scanning":true,"image_registry_vulnerability_scanning":true}` |
| integrations.count | 18 | 17 |
| integrations.list | `[{"name":"AWS"},{"name":"AWS Marketplace"},{"name":"Amazon ECS"},{"name":"Amazon EKS"},{"name":"Google Kubernetes Engine"},{"name":"Kubernetes"},{"name":"Docker"},{"name":"npm"},{"name":"Ruby"},{"name":"PHP"},{"name":"Rust"},{"name":"Cisco Umbrella"},{"name":"Infoblox"},{"name":"Nvidia"},{"name":"SPDX"},{"name":"CycloneDX"},{"name":"Syft"},{"name":"CI/CD pipelines"}]` | `[{"name":"Orca"},{"name":"AWS"},{"name":"EC2"},{"name":"ECS"},{"name":"EKS"},{"name":"Fargate"},{"name":"Lambda"},{"name":"ECR"},{"name":"Azure"},{"name":"GCP"},{"name":"Oracle Cloud"},{"name":"Alibaba Cloud"},{"name":"Kubernetes"},{"name":"Red Hat OpenShift"},{"name":"IBM Z"},{"name":"LinuxONE"},{"name":"GitHub"}]` |
| market.availability | - | `{"primaryMarkets":[],"availabilityScope":"global","availableCountries":[],"notAvailableCountries":[]}` |
| platform.support | `{"cli":true,"web":true}` | `{"cli":true,"web":true}` |
| pricing | `{"type":"quote","sourceUrl":"https://anchore.com","retrievedAt":"2026-08-18T21:40:18.813Z"}` | `{"type":"quote","plans":[{"free":false,"name":"Dev Security","features":["Code repo discovery and code scanning","Vulnerability and risk scanning of container images","Dynamic Threat Analysis (DTA)","Open source health scoring","Infrastructure-as-Code (IaC) scanning","Pipeline security with static analysis","CI/CD posture management","Integrity checks of code","SBOM generation and analysis","CI/CD, registry and SCM toolchain integrity"],"description":"Comprehensive software supply chain security for CI/CD pipeline and toolchain","contactSales":true},{"free":false,"name":"Cloud Security","features":["Auto-discovery, inventory and risk assessment across cloud accounts","Agentless cloud workload scanning","Support of AWS, Azure, GCP, Oracle and Alibaba Cloud","Configuration checks across compute, database, storage and identity","Out-of-the-box compliance reporting","eBPF-based real-time detection","Drift prevention and immutability","Advanced malware protection","Service identity-based segmentation","Event audit trails and incident response"],"description":"Agentless and agent-based visibility and risk assessment for public cloud and Kubernetes, CSPM, and real-time runtime protection","contactSales":true}],"summary":"Usage-based pricing for code repositories and workloads. Contact sales for pricing details.","freeTier":false,"sourceUrl":"https://www.aquasec.com/pricing/","retrievedAt":"2026-08-13T16:53:50.501Z"}` |
| pricing.free_tier | - | no |
| pricing.model | quote | commercial |
| pricing.price_level | unknown | unknown |
| pricing.transparent | no | no |
| reliability.status_page | - | yes |
| security.disclosure_policy | - | yes |
| security.fedramp | yes | - |
| security.gdpr | - | yes |

## Capabilities (Container Security)

| Capability | Anchore Enterprise | Aqua Security |
|---|:--:|:--:|
| **Capabilities** |  |  |
| Deployment model | - | Cloud managed cnapp |
| Image registry vulnerability scanning | - | ✓ |
| Ci cd pipeline build blocking | - | ✓ |
| Ebpf runtime syscall monitoring | - | ✓ |
| Container drift prevention blocking | - | ✓ |
| Kubernetes kspm security posture | - | ✓ |
| Infrastructure as code iac scanning | - | ✓ |
| Serverless lambda fargate support | - | ✓ |
| Network microsegmentation | - | ✓ |
| Compliance PCI SOC2 reporting | - | - |
| SOC2 type ii | - | - |
| ISO 27001 | - | - |
| Pricing model | - | - |

*Source: Vioscale. Generated 2026-09-01T15:20:10.696Z. "-" = undocumented, not absent.*
