SOTECHNOLOGY CUSTOMER TESTIMONIAL
From individual projects to portfolio-wide visibility.
SOtechnology is a UK-based web development agency that designs, builds and maintains digital platforms for clients across multiple sectors.
As its client roster grew, so did the complexity of managing the open-source components underpinning the software it delivered—each project carrying its own dependencies, versions and licence obligations.
Staying on top of that at portfolio scale had become an increasingly pressing challenge.
THE PROBLEM
Open source accelerated delivery—but multiplied governance risk.
Ad-hoc audits and developer-led reviews were no longer scaling across multiple client projects and dependency trees.
01
Version health
Outdated and unmaintained packages could accumulate unnoticed.
02
Licence exposure
Obligations across different licence types were difficult to track consistently.
03
Security posture
Multiple dependency trees made portfolio-wide oversight increasingly complex.
04
Client assurance
Clients were asking harder questions about the software supply chain.
THE NEED FOR A CLEARER VIEW
“We needed something that would surface all of that automatically.”
Claire Mirfin · Managing Director, SOtechnology
THE SOLUTION
Systematic, automated
OSS intelligence across
every connected codebase.
The Code Registry’s OSS scanning capability, powered by SCANOSS, offered the systematic solution SOtechnology needed.
Client projects were connected to secure code-vault infrastructure and immediately scanned to identify components, versions and licence information in a clear, structured dashboard.
Crucially, the output was not only readable by developers. Claire could present it directly to clients and business stakeholders without translation.
01
Identify components
Scan codebases to locate open-source components across client projects.
02
Match libraries
Match detected code against known open-source libraries.
03
Classify licences
Surface MIT, Apache-2.0, ISC, GPL and other licence information.
04
Track versions
Compare current and latest versions to reveal drift and upgrade priorities.
FRICTIONLESS ONBOARDING
Visibility without changing
how the agency worked.
The setup was quick and the value immediate. The platform consolidated intelligence across multiple client codebases without asking SOtechnology to replace its development workflow.
For an agency managing multiple codebases simultaneously, that consolidation alone was a significant win.
KEIKO LOGISTICS · CONCRETE PROOF
90+ open-source components identified and classified.
90+
COMPONENTS IDENTIFIED ACROSS CLIENT PROJECTS
52
COMPONENTS CONFIRMED AS UP TO DATE
4+
LICENCE FAMILIES SURFACED AND CLASSIFIED
SOtechnology and Keiko Logistics gained a clear baseline from which to plan structured upgrade cycles for the remaining components.
THE RESULTS
Continuous governance replaced one-off audits.
SOtechnology now has an always-on view of dependency health, licence obligations and version alignment across its client portfolio.
01
Always on
Continuous governance
02
One place
Portfolio visibility
03
No manual
Audit overhead
THE NEED FOR A CLEARER VIEW
A governance posture—not a reactive process.
The data enables SOtechnology to see what is being used, where version drift exists and where licence types may create future obligations. Intelligence that once required a dedicated audit is now always available.
GREATER CLIENT VALUE
Governance intelligence opened better commercial conversations.
Quantifying the third-party footprint across client codebases created new conversations around roadmap planning and technical investment.
Open-source visibility moved from being a governance obligation to becoming a genuine business-intelligence asset—something the agency could take directly to clients as part of the value it delivered.
01
Proactive risk management
Address version and licence concerns before they become urgent.
02
Informed roadmaps
Use evidence to guide upgrade cycles and technical investment.
03
Stronger assurance
Demonstrate to clients that their platforms meet expected standards.
WOULD CLAIRE RECOMMEND IT?
“Absolutely. Any development agency managing multiple client codebases needs this kind of visibility.”
Claire Mirfin · Managing Director, SOtechnology
FROM COMPLEXITY TO CLARITY
Move from uncertainty to complete code confidence.
Get the independent intelligence you need to understand, verify and protect your software.
Book a demo