ALA: Application Security (June 2026)
Catalog row in Vendor License Sources · Cited
- Kind
- Product terms
- Format
- Document id
- 5200-2000
- Applies to
- Fortify Static Code Analyzer, Software Security Center, WebInspect, WebInspect Enterprise, Application Defender, Fortify Audit Assistant, Sonatype Fortify On Premise and the Fortify Edition and Starter Edition suites.
- Aliases
- ALA Fortify; replaces 5200-1940 (January 20, 2025)
- Evidence
- Named Contributing Developer (definition)
- Fortify Scan Machine (definition)
- Fortify Concurrent Scanning: minimum two Scan Machines and one Fortify User per customer; no mixing of models
- Fortify Static Code Analyzer: one licence per Project; Project licences cannot be reused or reassigned
- Fortify Flexible Deployment Plan: Named Contributing Developers counted over a rolling 90 days, at least one per Project
- Fortify Software Security Center: every individual using the server must be licensed under Build to Order, Flexible Deployment or Lines of Code
- WebInspect Single Scan Target: one IP address, up to five logical systems, two IP changes per 12 months
- Fortify and WebInspect: scan only owned or licensed software; no installation on third-party or shared hosted servers without consent