Skip to main content

Welcome to the Platform

This is a comprehensive repository and extension security analysis platform that helps you identify and understand security risks in your code and extensions.

What is This Platform?

This platform provides comprehensive security analysis for your repositories, extensions, and vendors. Uncover security vulnerabilities, code quality issues, and compliance concerns with detailed reports and actionable insights. Make informed security decisions with AI-powered assessment capabilities.

Key Features

  • Code & Extension Security: Analyze repositories, browser extensions, NPM packages, and custom code for vulnerabilities and compliance issues
  • Vendor Security Assessment: AI-powered vendor due diligence with document analysis, security questionnaires, and compliance artifact review
  • Detailed Risk Reports: Get risk grades, severity levels, and file-level findings with actionable remediation guidance
  • Scheduled Scans & Automation: Set up recurring scans to track security over time and integrate with your CI/CD pipelines
  • Team Collaboration: Invite team members, manage sub-organizations, and share reports to improve security awareness
  • Flexible Deployment: Use your own Anthropic API key (BYOK) or the platform's shared key with full control over your data

Getting Started

New to this platform? Start here:

Repository & Code Security

Ready to analyze your code?

Vendor Security Review

Assess third-party security with AI-powered due diligence:

  • Vendor Security Review — Comprehensive vendor assessment with document analysis, questionnaires, and security scoring

Team Collaboration & Organization

Manage teams and organize your platform:

Advanced Features

Explore additional platform capabilities:

Bring Your Own Key (BYOK) Configuration

Using your own Anthropic API key?

Integrate & Automate

Use the API to integrate security scanning into your CI/CD pipelines and tooling:

Release Notes

  • v2.0.0 — Rebranded to "Can I Run That?", pre-processing status for large scans, subscription management features, critical security updates, and hardened security controls
  • v1.2.0 — Vendor security reviews, API access, generic ZIP upload, malicious code detection, and security updates
  • v1.1.0 — Multi-tenancy sub-organizations, security hardening, and BYOK improvements
  • v1.0.1 — Passkey authentication, NPM analysis, report sharing improvements

Help & Support