Our Marketplace / App Directory Security Review service focuses on assessing third-party applications that integrate with platform to ensure they meet strict security and privacy standards. These apps often access sensitive data and elevated platform privileges; making security testing essential. We perform in-depth reviews of application logic, API integrations, authentication flows, and permission scopes, along with data handling and storage practices either before these integrations are approved or during periodic reviews.

Marketplace Application Review

  • Code Review + Penetration Testing
  • Third Party Integrations
  • Vulnerability Mapping (SAST + DAST)

App Directory Review

  • Focused Penetration Testing
  • Third Party Integrations
  • Impact on Platform and User Data

Configuration Review

  • Role Assignment & Policies
  • Session/Authorization/Authentication
  • Platform Configuration – SAP, Salesforce etc.