Remedify instantly finds and prioritizes security vulnerabilities in your code. Stop wasting time on confusing false alarms โ AI-powered filtering surfaces only the truly critical findings.
Remedify detects security vulnerabilities with its powerful static analysis engine. Enhance your results with optional AI modules.
Scan your source code comprehensively with taint analysis, AST-based indexing, and 150+ security rules. Detect vulnerabilities without requiring AI.
Your data never leaves your infrastructure. Air-gapped environment support, HWID binding, and enterprise licensing for complete security. Runs as a single binary.
One-click repo import with GitHub, GitLab, Azure DevOps. Create Jira issues directly. Trigger automatic scans via webhooks.
Optionally filter false positives with AI, discover hidden vulnerabilities with deep scan. Enhance your SAST results with artificial intelligence.
Track data flow from user inputs to dangerous functions with Source โ Sink analysis. Sanitizer recognition and variable chain resolution.
All UI elements, error messages, and vulnerability descriptions in Turkish and English. Ideal for government agencies and international enterprises.
Remedify was developed by an experienced cybersecurity team that pioneered the adoption of Static Code Analysis (SAST) methodology in Turkey and has successfully delivered the most SAST projects in the country over the past decade. This expertise ensures Remedify is not just a technical product, but an engineering platform shaped by deep, field-proven implementation experience.
Designed entirely with local engineering expertise, Remedify strengthens organizations' software security while reducing dependence on foreign technologies. Its architecture, built for institutions with the highest security requirements, makes source code security processes manageable and sustainable at enterprise scale.
Remedify is a trusted partner for organizations operating in critical infrastructure โ including government agencies, defense industry, financial sector, and telecommunications companies. As part of a vision for indigenous technology development, Remedify positions itself as a platform that strengthens Turkey's national competence in cybersecurity and enhances independence in strategic technologies.
Scan your projects across 10 programming languages with 150+ security rules โ fast and comprehensive. Including mobile security (Android + iOS) with a continuously growing rule set.
After your SAST scan completes, optionally filter false positives with AI modules and discover hidden vulnerabilities.
Extracts source code context for each finding, sends it to the LLM, and gets an answer: "real or false positive?" Results are evaluated with confidence scores.
Takes existing findings from SAST-detected files, extracts file context, and asks the LLM: "are there other vulnerabilities?" Newly discovered issues are automatically added.
Choose your AI provider โ full flexibility with cloud or local model support.
From SCM repo import to reporting โ fully automated security scanning process.
Connect your GitHub, GitLab, or Azure DevOps account. Import all your repos with one click or select specific ones. Fast start with branch selection and private repo support.
Fast repo cloning with shallow clone, automatic language detection, AST indexing, and taint analysis. Parallel scanning with concurrent scan queue.
Optionally filter false positives with AI modules, discover hidden vulnerabilities with deep scan. Get fix suggestions for each finding. SAST results are ready even without AI.
Severity distribution, trend charts, project-based scan history. Source code viewing with finding details. Jira issue creation and built-in task tracking.
Comprehensive security analysis with taint analysis, AST-based indexing, and intelligent database detection.
Tracks data flow from user inputs to dangerous functions via Source โ Sink analysis.
Structurally parses source code and prepares it for analysis.
Automatically detects the database used from project files.
High-performance parallel scanning infrastructure.
Independent stress tests โ measured on open-source projects.
| Project | Language | Files | Lines | Findings | Duration |
|---|---|---|---|---|---|
| Linux Kernel | C | 32.623 | 24.697.566 | 22.296 | 17h 24m |
| Elasticsearch | Java | 18.129 | 3.275.596 | 4.628 | 1h 26m |
| Eclipse Mosquitto | C | 368 | 83.423 | 344 | 11 min |
| OWASP Juice Shop | JavaScript | 487 | 80.036 | 144 | 10 min |
| OWASP WebGoat | Java | 411 | 77.356 | 183 | 5 min |
Test environment: Intel Xeon E5-2697 v2 (40 cores) ยท 64 GB DDR3 ยท SAS RAID ยท Ubuntu 22.04
Significantly faster results are achieved with modern hardware (NVMe SSD, DDR5).
Integrate with your source code management and issue tracking tools in one click.
Track, report, and share scan results through a centralized dashboard.
Total applications, projects, scan counts. Severity distribution (High/Medium/Low), trend charts, and recent scans list.
PDF report โ severity distribution, finding details, executive summary. Export all findings with JSON and CSV.
File, line, function, description for each finding. AI review results and source code context viewing (with line numbers).
Fingerprint-based (MD5 hash) deduplication. NEW / RECURRENT / FIXED labeling. AI review data transfer for token savings.
Meet enterprise security standards with licensing, authentication, and audit logging.
Hardware ID-bound licensing. Stable and persistent HWID for every platform. HWID always visible on the license page โ copy and send to support team with one click.
JWT token-based authentication, role-based access control (admin, manager, developer, viewer). LDAP / Active Directory integration and session management.
Structured audit logging (DB + stdout). 14+ actions logged โ login, user CRUD, scan, project, application, license, and more. UI log viewer with filter and pagination.
All license events recorded: upload, activate, expire, mismatch. Full traceability for enterprise compliance and troubleshooting.
Compare Remedify with open-source and enterprise SAST solutions.
| Feature | Remedify | Open Source SAST | Enterprise SAST |
|---|---|---|---|
| AI False Positive Filtering | โ Yes | โ No | Limited |
| AI Deep Scan | โ Yes | โ No | โ No |
| On-Premise / Air-Gapped | โ Yes | โ Yes | Mostly Cloud |
| Turkish Interface | โ Yes | โ No | โ No |
| Onboarding Wizard | โ Yes | โ No | Limited |
| Taint Analysis | โ Yes | Limited | โ Yes |
| Webhook Auto-Scan | โ Yes | โ No | โ Yes |
| 10 Languages + 150 Rules | โ Yes | 1-3 Languages | โ Yes |
| Mobile Security (Android+iOS) | โ Yes | โ No | Limited |
| Android Platform Detection | โ Yes | โ No | Limited |
| LDAP Integration | โ Yes | โ No | โ Yes |
| PDF/JSON/CSV Export | โ Yes | Limited | โ Yes |
| Finding Deduplication | โ Yes | โ No | โ Yes |
| License Audit Log | โ Yes | N/A | โ Yes |
| Enterprise Licensing | โ Yes | N/A | โ Yes |
| Price | ๐ฐ Affordable | Free | ๐ฐ๐ฐ๐ฐ |
On-premise deployment โ flexible licensing options for teams of every size.
โฑ AI features can be activated at the specified additional cost.
Fill out the form to learn more about Remedify or request a demo.
Choose a plan, create your registration โ our team will contact you as soon as possible.
View Plans โ+90 216 222 00 48
Barbaros Mh. Halk Cd. Palladium Residence A Blok No:8/A Ataลehir / ฤฐstanbul