Roadmap

Roadmap

On this page you can find a high-level overview of Coana's roadmap. At Coana, we pride ourselves on being transparent and open about our plans and we are always looking for feedback from our users. If you think anything is missing don't hesitate to reach out to us (see Contact or use your Coana Slack external connection if you are a customer).

Language support

We're building a dedicated static analysis for each language. This allows us to precisely model language-specific features for each language, providing highly accurate results. Our analyses conduct whole-program analysis of both your application code and its direct and indirect dependencies.

LanguageReachability analysisTraditional SCA
JavaScript / TypeScript
Java
Kotlin
Scala
Python
Go
C#
other languagesTBD

Integrations and other features

Q1 - 2024

  • READY
    Vanta Integration
  • READY
    Vulnerability dismissals (Mark vulnerabilities as not relevant on an organization or project-level)
  • READY
    Multi-channel support for Slack integration

Q2 - 2024

  • READY
    Vulnerability fixes through our CLI
  • READY (stage: beta)
    Jira integration

Q3 - 2024

  • READY (stage: beta)
    Stats and insights (how many vulnerabilities were fixed in a given time period, how many vulnerabilities were introduced in a given time period, etc.)
  • READY (stage: beta)
    Linear integration
  • READY (stage: beta)
    Coana Guardrail: CI/Pipeline blocking on reachable vulnerabilities

Q4 - 2024

  • READY
    Project labels (As a project filter in the stats and project overview)
  • READY
    SBOM / VEX dumps
  • IN DEVELOPMENT
    Managed scanning for GitHub users (Automatically deploy Coana across all your repositories).

Q1 - 2025

  • Team features (limit project access to specific teams)