Platform Security
XMPro platform undergoes app security checks every 3 months. We use Veracode as the provider to analyze the security of the software to help identify, prevent, and fix any vulnerabilities. Veracode scans the software and tests it in multiple ways, including Static Analysis (white-box testing), Dynamic Analysis (black-box testing), and Software Composition Analysis.
Static Application Security Testing (SAST) is a form of white-box testing used to scan an application’s source, binary, or byte code.
Dynamic Application Security Testing (DAST) analyzes a web application through the front end to find vulnerabilities through simulated attacks. This is also called Penetration testing.
Software Composition Analysis scans all the components used in an application for security risks and vulnerabilities.
Product | SAST Score | DAST Score | Date |
---|---|---|---|
Subscription Manager | 92 | 95 | 21 Aug 23 |
App Designer | 85 | 95 | 21 Aug 23 |
Data Stream Designer | 91 | 95 | 21 Aug 23 |
XMPro AI | 99 | Not Available | 04 Sep 23 |
Last modified 22d ago