Black Duck Home Page
Black Duck Home Page
Build trust in your software
  • Support
  • English
  • 日本語
  • 简体中文
close search bar

Sorry, not available in this language yet

close language selection
  • English
  • 日本語
  • 简体中文
  • Solutions
  • Products
  • Services
  • Partners
  • Resources
  • Blog
  • Company
  • Contact Sales

Company

go back

About Black Duck

  • Leadership
  • Newsroom
  • Blog
  • Partners
  • Careers
  • Contact Sales
Gartner Magic Quadrant

2023 Gartner® Magic Quadrant™ for AppSec Testing Read more

Forrester Wave Leader 2023 SAST Recognition

Forrester Wave Leader for SAST Read more

Forrester Wave Leader 2023 Software Analysis

Forrester Wave Leader for SCA Read more

  • Leadership | Meet the team guiding Black Duck's vision and strategy.
  • Newsroom | Latest news, press releases, and media coverage about Black Duck.
  • Blog | Insights, updates, and expert opinions on application security.
  • Partners | Information on Black Duck's partnerships and collaboration opportunities.
  • Careers | Explore job opportunities and career paths at Black Duck.
  • Contact Sales | Get in touch with our sales team for product inquiries and consultations.
close sub navigation

Products

go back

Integrated SaaS Platform

  • Polaris Platform
  • fAST Static
  • fAST SCA
  • fAST Dynamic

Tools

  • Coverity Static
  • Black Duck SCA
  • Continuous Dynamic
  • Seeker Interactive
  • Software Risk Manager ASPM
  • Defensics Protocol Fuzzing

Integrations

  • Code Sight IDE Plug-in
  • SCM Integrations
  • Build & CI Tool Integrations
  • Developer Workflow Integrations
  • 3rd-Party AST Tool Integrations
  • Cloud Deployment Integrations
Gartner Magic Quadrant 2023 Gartner® Magic Quadrant™ for AppSec Testing See why Black Duck is a Leader
  • Polaris Platform | Unified platform for managing software security and compliance.
  • fAST Static | Unified platform for managing software security and compliance.
  • fAST SCA | Unified platform for managing software security and compliance.
  • fAST Dynamic | Unified platform for managing software security and compliance.
  • Coverity Static | Static analysis tool for detecting software defects and vulnerabilities.
  • Black Duck SCA | Software composition analysis to manage open source security and license compliance.
  • Continuous Dynamic | Continuous dynamic application security testing.
  • Seeker Interactive | Interactive application security testing tool for detecting vulnerabilities.
  • Software Risk Manager ASPM | Application security posture management tool for risk management.
  • Defensics Protocol Fuzzing | Protocol fuzzing tool to identify and fix security flaws.
  • Code Sight IDE Plug-in | Integrated development environment plug-in for real-time security feedback.
  • SCM Integrations | Source code management integrations for seamless security checks.
  • Build & CI Tool Integrations | Integrations with build and continuous integration tools.
  • Developer Workflow Integrations | Tools to integrate security into the developer workflow.
  • 3rd-Party AST Tool Integrations | Integrations with third-party application security testing tools.
  • Cloud Deployment Integrations | Integrations for securing cloud deployments.
  • Open Source & Security Audits | Comprehensive technical due diligence services for M&A.
close sub navigation

Solutions

go back

Use Cases

  • AI-generated code
  • API Security Testing
  • AppSec Program Consolidation
  • Application Security Testing
  • DevSecOps
  • Software Supply Chain Security
  • Manage Enterprise AppSec Risk
  • Cloud Security
  • Open Source License Compliance
  • M&A Due Diligence
  • Quality and Security Standards Compliance

By Technology

  • Static Analysis (SAST)
  • Software Composition Analysis (SCA)
  • Dynamic Analysis (DAST)
  • Interactive Analysis (IAST)
  • Penetration Testing
  • Mobile Application Security Testing (MAST)
  • Application Security Posture Management (ASPM)
  • Fuzz Testing Solutions

By Industry

  • Automotive
  • Financial Services
  • IoT & Embedded
  • Medical Devices
  • Public Sector

By Role

  • Dev and DevOps Teams
  • Security Teams
  • Legal Teams
  • AI-generated code | Harness the power of AI coding assistants while managing the risks.
  • API Security Testing | Manage software risks with a holistic API security testing program.
  • AppSec Program Consolidation | Simplify your application security program.
  • Application Security Testing | Solutions to address security risks at all stages of the application life cycle.
  • DevSecOps | Solutions to help shift security left without slowing down your development teams.
  • Software Supply Chain Security | Solutions to identify and manage software supply chain risks end-to-end.
  • Manage Enterprise AppSec Risk | Scale your application security program without increasing complexity or adding friction.
  • Cloud Security | Optimize your applications for secure deployment and operation in the cloud.
  • Open Source License Compliance | Effective solutions for ensuring open source license compliance.
  • M&A Due Diligence | Identify software risks that could negatively impact the value of acquired IP.
  • Quality and Security Standards Compliance | Ensure your software complies with the standards critical to customers and regulators.
  • Static Analysis (SAST) | Analyzing code for security vulnerabilities without executing it.
  • Software Composition Analysis (SCA) | Analyzing software components for security and license compliance.
  • Dynamic Analysis (DAST) | Testing running applications for security vulnerabilities.
  • Interactive Analysis (IAST) | Real-time security testing during application execution.
  • Penetration Testing | Simulated cyberattacks to identify vulnerabilities.
  • Mobile Application Security Testing (MAST) | Ensuring the security of mobile applications.
  • Application Security Posture Management (ASPM) | Managing and improving application security posture.
  • Fuzz Testing Solutions | Identifying vulnerabilities by inputting random data to applications.
  • Automotive | Security solutions for automotive industry applications.
  • Financial Services | Security solutions tailored for financial services.
  • IoT & Embedded | Security for Internet of Things and embedded systems.
  • Medical Devices | Security solutions for medical devices.
  • Public Sector | Security solutions for government and public sector organizations.
  • Dev and DevOps Teams | Security tools and practices for development and DevOps teams.
  • Security Teams | Solutions and support for dedicated security teams.
  • Legal Teams | Resources and compliance tools for legal teams.
close sub navigation

Services

go back

Testing Services

  • Security Testing Services Overview
  • Penetration Testing
  • Mobile Application Security Testing (MAST)

Program Services

  • Threat & Risk Assessments
  • Program Strategy & Planning
  • Security Training
  • Implementation & Deployment

Audit Services

  • Open Source & Security Audits
Gartner Magic Quadrant 2023 Gartner® Magic Quadrant™ for AppSec Testing See why Black Duck is a Leader
  • Security Testing Services Overview | Summary of the security testing services offered.
  • Penetration Testing | Simulated cyberattacks to identify vulnerabilities in your systems.
  • Mobile Application Security Testing (MAST) | Ensuring the security of mobile apps against threats.
  • Threat & Risk Assessments | Evaluation of potential security threats and vulnerabilities.
  • Program Strategy & Planning | Developing effective strategies for your security program.
  • Security Training | Courses and workshops to enhance your security skills and knowledge.
  • Implementation & Deployment | Assistance with deploying and integrating security solutions.
  • Open Source & Security Audits | Evaluations of open source components and overall security posture.
close sub navigation

Resources

go back

Latest Updates

  • Newsroom
  • Blog
  • Cybersecurity Research Center

Customer Resources

  • Support
  • Documentation
  • Black Duck Academy
  • Search Knowledge Base
  • Community Q&A

Other Resources

  • Datasheets
  • eBooks
  • Case Studies
  • Research & Reports
  • Webinars
  • White Papers
  • AppSec Glossary
  • Resource Library
Gartner Magic Quadrant 2023 Gartner® Magic Quadrant™ for AppSec Testing See why Black Duck is a Leader
  • Newsroom | Latest news, press releases, and media coverage about Black Duck.
  • Blog | Insights, updates, and expert opinions on application security.
  • Cybersecurity Research Center | In-depth studies and findings on cybersecurity topics.
  • Support | Assistance and troubleshooting for Black Duck products and services.
  • Documentation | Detailed guides and manuals for using Black Duck products.
  • Black Duck Academy | Educational courses and training on application security.
  • Search Knowledge Base | Find answers and solutions in our extensive knowledge repository.
  • Community Q&A | Engage with other users and experts to get your questions answered.
  • Datasheets | Technical information and specifications for our products and solutions.
  • eBooks | Downloadable resources on various application security topics.
  • Case Studies | Real-world examples of how customers use Black Duck solutions.
  • Research & Reports | Comprehensive reports and analysis on industry trends.
  • Webinars | Engage with experts through sessions to enhance your application security knowledge
  • White Papers | Explore in-depth research and insights to guide your security strategies and decisions
  • AppSec Glossary | Definitions and explanations of common application security terms.
  • Resource Library | A collection of all available resources and materials.
close sub navigation

Legal

  • Home
    • Code Sight
    • Dynamic Application Security Testing
    • Services
    • Blog Home
    • About Black Duck
    • Sitemap
  • About Black Duck
    • Leadership
    • Legal
  • Legal
    • Professional Services Agreement
    • Line Count Guidelines
    • Master SaaS Agreement Archive
Table of Contents
  • Terms and Agreements
  • Company Policies
  • Security and Disclosure Policies
  • Other Site Policies
  • Brand and Trademarks

Terms and Agreements

Master Services Agreement

Master Software as a Service (SaaS) Agreement

Terms of Service

End User Software License Agreement

Evaluation License Agreement

CBT Subscription License Agreement

Company Policies

Environmental, Social, and Corporate Governance (ESG) Statement

Code of Conduct

UK Modern Slavery Act Statement

Security and Disclosure Policies

Security Commitments

Responsible Disclosure Policy

Vulnerability Disclosure Policy

Other Site Policies

Acceptable Use Policy

Privacy Policy

Brand and Trademarks

Brands and Trademarks

Black Duck Home Page

Follow

Manage Email Preferences Manage Cookie Settings 800 District Ave. Ste 201
Burlington, MA 01803

Contact Us

Solutions

  • AI-generated Code
  • API Security Testing
  • AppSec Consolidation
  • Application Security Testing
  • DevSecOps
  • Software Supply Chain Security
  • Manage AppSec Risk
  • Cloud & Container Security
  • Open Source License Compliance
  • M&A Due Diligence
  • Quality & Security Standards Compliance

Products & Services

  • AppSec SaaS Platform
  • Static Analysis (SAST)
  • Software Composition Analysis (SCA)
  • Interactive Analysis (IAST)
  • Dynamic Analysis (DAST)
  • Penetration Testing
  • Protocol Fuzzing
  • AppSec Program Services
  • Threat & Risk Assessments

Support

  • Community
  • Documentation
  • Product Education
  • AppSec Training
  • Add-On Services

Resources

  • Datasheets
  • Webinars
  • Demos
  • Research & Reports
  • White Papers
  • Blog

Explore more

  • About us
  • Contact sales
  • Customer stories
  • Partners
  • Newsroom
  • Careers
  • Glossary
  • Sitemap

Legal

  • Agreements
  • Privacy
  • Security
©2025 Black Duck Software, Inc. All Rights Reserved