Start with an authorized scope
The product is designed to analyze authorized source code only. An organization defines the approved scope, and the workflow records the analysis as a discrete scan that can be reviewed, exported, or deleted.
How the workflow works
- Create a scan. Start an approved analysis job for the supported source package.
- Run deterministic analysis. Parsing and deterministic checks identify reproducible findings.
- Review the result. Findings are organized by severity and include affected locations, evidence, explanation, and remediation guidance.
- Export or delete. Export the report for an internal engineering workflow or delete it from the console.
What a report contains
Current product boundary
The current working implementation is a publicly reachable, invitation-only private-beta demonstration. It uses one controlled, intentionally vulnerable bundled demonstration repository and deterministic demonstration data. It does not currently accept customer repository uploads and is not represented as mature production SaaS.
AI-assisted reasoning describes the product direction and intended workflow. The current bundled sample is deliberately deterministic so its result remains reproducible.