# Introduction

## Hey... we are Arnica!

Arnica is an application security posture management (ASPM) solution that protects developers, source code, and products. Arnica actively mitigates application security risks in your development ecosystem across Static Application Security Testing (SAST), Software Composition Analysis (SCA), open source license violations, Infrastructure as Code (IaC), hardcoded secrets, excessive access to source code and more.

<figure><img src="https://4035514934-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2FMxc1Ek3qoIZi5t2Sx7do%2Fuploads%2Fgit-blob-454ee4408d7abd885d96cdf64401b43e7aa5622b%2Fimage.png?alt=media" alt=""><figcaption></figcaption></figure>

## <img src="https://assets-global.website-files.com/61d1b6e84887f53fef1dcdf2/645e7831496f952080645ad4_Code-Security.png" alt="Code Security" data-size="line"> Code Security

Prevent code risks and third-party vulnerabilities in source code (SAST, SCA, IaC).

## <img src="https://assets-global.website-files.com/61d1b6e84887f53fef1dcdf2/6331e0d92c1cff64d1f38f45_form-textbox-password.png" alt="Secret Detection &#x26; Mitigation" data-size="line"> Secret Detection & Mitigation

Identify & mitigate hardcoded secrets in real time.Learn More

## <img src="https://assets-global.website-files.com/61d1b6e84887f53fef1dcdf2/635827191547a1114779874b_clipboard-list-outline.png" alt="Software Bill Of Materials (SBOM)" data-size="line"> Software Bill Of Materials (SBOM)

Visualize & catalogue 100% of open-source libraries used across your organization.

## <img src="https://assets-global.website-files.com/61d1b6e84887f53fef1dcdf2/6331e0f633529a462d65dd08_shield-account.png" alt="Automated Developer Access Management" data-size="line"> Automated Developer Access Management

Maintain development velocity while implementing least privilege.

## <img src="https://assets-global.website-files.com/61d1b6e84887f53fef1dcdf2/6331e0ff92142437e1b17972_compliance-white.png" alt="Security Reporting &#x26; Audit" data-size="line"> Security Reporting & Audit

Prove efforts towards compliance with fully logged, always-active security.

## <img src="https://assets-global.website-files.com/61d1b6e84887f53fef1dcdf2/649c80fe6f000fafcad83ec1_hub-outline.svg" alt="Application Security Posture Management (ASPM)" data-size="line"> Application Security Posture Management (ASPM)

Identify and prioritize risks in your product & source code
