# How Pomelo uses Snyk

**~900 repositories**: “Implemented SAST and SCA scanning for ~900 repositories in less than a month”

As published on [snyk.io](https://snyk.io/case-studies/pomelo/). Captured by usedby on 2026-10-07.

- Company: [Pomelo](https://www.usedby.ai/companies/pomelo.md)
- Tool: [Snyk](https://www.usedby.ai/tools/snyk.md)
- Teams: development teams, platform solutions, engineering

## What the story says

Pomelo, a fintech company, uses Snyk's application security platform (Open Source and Code) to run SAST and SCA scanning across its repositories. It replaced a custom-built CircleCI security orb and connected Snyk to tools such as Jira, Slack, GitHub and CircleCI to build an end-to-end application security program.

Summary written by usedby from the source page, in English. The figures are those of Snyk and Pomelo, not ours.

> When they started with Snyk, the Pomelo team set two goals: Covering all ~900 repositories with Snyk Granting Snyk platform access to all development teams (~200 developers) In less than a month, Pomelo and Snyk met both of these goals and rolled out security training for managers and engineers.

- **~200 developers**: “Granted Snyk platform access to ~200 developers in under three weeks”
- **9,500**: “Resolved 9,500 vulnerabilities, for a total of 2,150 Highs and 200 Criticals (including 100 that contained mature exploits)”

> The most important thing for us is that you can manage the security test findings data from one place.
>
> Leandro Sanginetto, Technical Expert Engineer

## What usedby checked

We compared the story with its live page on 2026-10-07.

- Checked: the figure ~900 repositories is printed word for word on the page, near the name of Pomelo.
- Checked: the passage quoted above is copied word for word from the page, near the name of Pomelo.
- Checked: Pomelo uses Snyk. Confirmed line. Latest check across sources: 2026-10-07.
- Not checked: the result itself. We quote it; we did not measure it.

---
Source: https://www.usedby.ai/case-studies/pomelo-snyk · How we check: https://www.usedby.ai/methodology
