Easily identify risks and opportunities for investment, rationalization, Cloud migration, and improvement.
Based on facts.
Automatically build an objective migration roadmap across an entire application portfolio in seconds using the Portfolio Advisor for Cloud. Segment and prioritize each application into categories such as Rehost, Refactor, Rearchitect, Rebuild, or Retire.
Automatically detect all open source frameworks and 3rd party components from a proprietary knowledgebase of 100 million+ components. Use the unique Open Source Safety score to prioritize remediation efforts across entire portfolios and focus on the most business critical applications first.
Expand security risk insight coverage by identifying CWEs that represent possible future vulnerabilities that have not yet been reported officially as CVEs. Automatically detect CWEs via CAST’s exclusive Open Source Software Intelligence Database (OSSIDB) and structural code quality technology that analyzes the most popular OSS components.
Effortless On-boarding
Onboarding apps takes only minutes: scan code locally, answer a short web-based survey – results are available instantly.
Local Code Scan
Source code doesn’t leave the premises. Scan apps locally, then upload metrics. Or automate the process via a CLI. See how it works.
40+ Technologies
Supported programming languages: Java, Javascript, Python, JSP, COBOL, SAP/Abap, C/C++, C#, PHP, Visual Basic, T-SQL, PL/SQL, Shell…
Application Benchmark
Benchmark against 10,000+ applications comparing metrics using more than a dozen dimensions (e.g. industry, technology, app type, etc.)
Trends
Track progress over time to understand if health, cloud readiness, and open source safety is improving across the portfolio and for each application.
Custom Surveys
Customizable surveys enable more contextualized analysis by enhancing technical code analysis insights with qualitative data.
Custom Indicators & Dashboards
Define custom calculations and reporting to develop tailored views.
Standard Format Exports
Export results in PowerPoint, Excel, and XML for local analysis or integration into other tools.
CI/CD DevOps Connection
Connect with any CI/CD pipeline or DevOps toolchain through a configurable command line to automate source code analysis.
Public Rest API
Key metrics can be extracted and integrated with other systems such as EA, APM, or PPM tools, using the public REST API.
Role-Based Dashboards
Enroll users with different profiles and associated visibility: Portfolio Managers, Contributors and Viewers.
Out of the Box Integrations
Turnkey extensions are available for GitHub, BitBucket, Azure DevOps and Jira to automate code scanning and automatically create tickets based on software intelligence.
Pascal Bernal
CIO
Jeremy Woo-Sam
Azure Blackbelts Lead
Sunil Agrawal
Chief Architect