Lineaje SCA360 is a cloud-native, contextual risk assessment tool that unifies all appsec findings with Lineaje software crawling and analysis engines, and scans source code, artifact repositories, and containers.
Lineaje SCA360 is a cloud-native, contextual risk assessment tool that unifies all appsec findings with Lineaje software crawling and analysis engines, and scans source code, artifact repositories, and containers. With pre-deployed scanners to identify software supply chain security vulnerabilities and risks at every stage of software development, SCA360 provides deeper context than ever, enabling centralized risk prioritization and remediation planning for attack surface reduction. Features include:
Safe Scanning that scans private source code, artifact repositories, and container images within an organization security boundaries, ensuring critical and proprietary IP remains fully protected and never leaves the environment.
Deep Dependency and Reachability Scanning that takes advantage of Lineaje unique ability to enumerate all dependencies, including static dependencies, to derive mandatory and optional dependency chains and their inherent risks.
Malware Scanning that detects embedded malicious and tampered packages, highlighting those of dubious origin.
Additional scanners include end-to-end software attestation, code quality, security posture, provenance, geo-provenance and more, for comprehensive risk assessment and centralized prioritization of those risks.
Highlights
Integrate results from all AppSec tools (SAST, DAST, container scanners, secret scanners, etc.) into a single pane of glass, including findings from static code analyzers and runtime scanners. Utilize a full policy framework that enables automated filtering and prioritization
Achieve deep SCA (Software Composition Analysis) of source code in all major languages. Enumerate open-source and third-party components by parsing source and build files
Generate SBOMs and create a fully attested supply chain by verifying the integrity and provenance of every component. Search across a single project or multiple scanned projects using more than 100+ attributes
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
You pay based on what you scan, with four independent usage dimensions. Each carries its own per-unit rate and bills only for the volume you use. One dimension charges per buildable source repository, meaning each unique Git repo with a build system. Another charges per container image scanned. A third charges per SBOM document ingested and scanned. The fourth charges per standalone binary artifact scanned without source or SBOM. These options work separately, so you combine them based on the assets you need to analyze. There are no tiers or commitments; costs scale with scanning activity.
Top-of-mind questions for buyers
What counts as one buildable source repository for billing?
A buildable source repository is each unique Git repo that includes a build system, such as Maven, Gradle, or npm. You are charged once per distinct repo scanned. A repo without a recognized build system does not fall under this dimension.
How do the four scanning charges combine on my bill?
Each dimension bills independently based on volume scanned. Repository, container image, SBOM document, and binary artifact scans each carry their own per-unit rate. Your total adds these separately. The dimension that dominates depends on which asset type you scan most.
When do I use the SBOM scan versus the binary artifact scan dimension?
The SBOM scan applies when you ingest an existing SBOM document in SPDX or CycloneDX format. The binary artifact scan applies to a standalone binary, such as an MSI or APK, scanned without source code or an SBOM. Each meters separately per item.
www.lineaje.com
Helpful?
Vendor refund policy
All Orders are non-cancellable and all fees and other amounts you pay under this Agreement are non-refundable.
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
SBOM360 Hub is the industry first SBOM Exchange for the complex software distribution chain. SBOM360 Hub connects software producers, software consumers, and the software distribution channel to publish, share and use SBOMs and related compliance artifacts privately, collaboratively enabling frictionless sales and software consumption.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.