Published
Last reviewed: 2026-09-30
CodeCleared security features
Explore CodeCleared security features for dependency risk, licenses, secrets, code quality, policies, evidence, and access.
Security work, organized by project unit
CodeCleared groups results by the repository and project unit that produced them. Choose the feature that matches the decision you need to make, then keep the branch and commit with the resulting evidence.
Explore features
- Dependency security for vulnerabilities found from dependency lockfiles.
- SBOM for a dependency inventory you can export.
- Licenses for allow/deny policy checks.
- Secrets for exposed-credential findings.
- Source code security for source-code findings and its separate credit pool.
- Quality Gates for composable pass/fail expressions on scan results.
- Dependency Advisor and Package Finder before adopting a package.
- PR checks to enforce vulnerabilities, secrets, licenses, advisor, and SAST on GitHub pull requests and GitLab merge requests.
- Reports, Auditor Export Pack, audit logs, and policy bundles for evidence and governance.
- Outbound webhooks and Jira / Linear issue trackers for workflow integrations.
- Finding and platform SLAs for remediation tracking.
- Public trust badge for embeddable showcase-site badges (Starter+).
Choose the right scope
A pass is evidence for the scanned commit, not a certification or a guarantee that no risk exists. Review findings in context, use narrowly scoped overrides when justified, and scan again after a dependency or source change. Availability, credits, retention, and access depend on your organization’s plan.