Roadmap
On this page you can find a high-level overview of Coana's roadmap. At Coana, we pride ourselves on being transparent and open about our plans and we are always looking for feedback from our users. If you think anything is missing don't hesitate to reach out to us (see Contact or use your Coana Slack external connection if you are a customer).
Language support
We're building a dedicated static analysis for each language. This allows us to precisely model language-specific features for each language, providing highly accurate results. Our analyses conduct whole-program analysis of both your application code and its direct and indirect dependencies.
Language | Reachability analysis | Traditional SCA |
---|---|---|
JavaScript / TypeScript | ✓ | ✓ |
Java | ✓ | ✓ |
Kotlin | ✓ | ✓ |
Scala | ✓ | ✓ |
Python | ✓ | ✓ |
Go | ✓ | ✓ |
C# | ✓ | ✓ |
other languages | TBD | ✓ |
Integrations and other features
Q1 - 2024
- READYVanta Integration
- READYVulnerability dismissals (Mark vulnerabilities as not relevant on an organization or project-level)
- READYMulti-channel support for Slack integration
Q2 - 2024
- READYVulnerability fixes through our CLI
- READY (stage: beta)Jira integration
Q3 - 2024
- READY (stage: beta)Stats and insights (how many vulnerabilities were fixed in a given time period, how many vulnerabilities were introduced in a given time period, etc.)
- READY (stage: beta)Linear integration
- READY (stage: beta)Coana Guardrail: CI/Pipeline blocking on reachable vulnerabilities
Q4 - 2024
- READYProject labels (As a project filter in the stats and project overview)
- READYSBOM / VEX dumps
- IN DEVELOPMENTManaged scanning for GitHub users (Automatically deploy Coana across all your repositories).
Q1 - 2025
- Team features (limit project access to specific teams)