It is very easy to integrate with our applications, it helps us mitigate vulnerabilities in legacy (and modern) apps at scale.
There are no downsides as far I can tell so far. Would be great if we could have some more options for configuration of rules/threat models etc. The pricing model seems not suited well enough where you don't really know what your exposure will look like until after installation - which makes sense but maybe make that clearer up front? We use this product primarily in an environment were risk assessment happens before code goes into production; however there's also usage within development environments too.