Should I use Xray (Getxray)?
AI-Powered Test Management in Jira - getxray.app
Depends. Buy it if your QA process already lives in Jira and you need traceability, automation hooks, and enterprise controls. Skip it if you're off Jira or a small team — plain Jira issues or a lighter tool will do.
Confidence
Medium. Based on 20+ public sources; most review snippets were truncated, so no verbatim user quotes were available.
Ratings
- Value for money
- Ease of useNo usability evidence in sources
- Feature depth
- Support quality
- Security posture
Pricing
from $10/user/month
Xray (per user)
ModelNot disclosed
Monthly feesNot disclosed
HardwareNot disclosed
Free tierNo
Xray Enterprise$275/yr for 10 users
Best for
- →QA teams already standardized on Jira
- →Regulated enterprises needing data residency
- →Teams automating tests via CI/CD
- →Orgs consolidating scattered test documentation
Not for
- ×Anyone not running Jira — hard dependency, no standalone mode
- ×Small teams; Jira issue tracking plus a spreadsheet suffices
- ×Solo devs and prototypes — significant overkill
Gotchas - check before you buy
high
Jira-only: leaving Atlassian means migrating everything out — plan the exit cost.
medium
Enterprise pricing is quote-based; $275/yr for 10 users won't match bigger tiers.
medium
Zephyr-to-Xray migration threads warn of effort; pilot the migration before committing.
medium
Per-user pricing scales fast as QA headcount grows.
Pros and cons
Pros
- +Claims 10M+ testers; leading test management app for Jira
- +Broad CI/CD hooks: Jenkins, Bamboo, Maven, JUnit, REST API
- +Enterprise features: dynamic test plans and data residency
- +Publishes security advisories and maintains a public security page
- +Customer service recognized with a Globee award
Cons
- −Hard Jira lock-in — rivals market themselves as 'Xray without Jira'
- −Server/Data Center editions have required repeated public security advisories
- −Migrating test tools, e.g. Zephyr, generates community pain threads
- −Users report Xray API troubleshooting in community threads
Sources & method
Analyzed 10/01/2026 - 15 sources - Active security program (advisories, product security page); Hudson Rock flags 85 infostealer credentials tied to the domain.
official x3review x5security x5news x2
- Historical advisories for Server/Data Center, Vendor published advisories in 2020 and 2022 plus a Log4J (CVE-2021-4104) bulletin; documentation marks them reviewed/patched.
- Infostealer credentials on domain, Hudson Rock lists 85 infostealer credentials associated with from cybercrime logs — typical exposure, not a reported vendor breach.
Comments
One queue. No nested comments. Give a display name first. Limit: 200 words per comment and 7 comments per day. You can edit or delete yours.
No comments yet.