SOTECHNOLOGY CUSTOMER TESTIMONIAL

From individual projects to portfolio-wide visibility.

SOtechnology is a UK-based web development agency that designs, builds and maintains digital platforms for clients across multiple sectors.

As its client roster grew, so did the complexity of managing the open-source components underpinning the software it delivered—each project carrying its own dependencies, versions and licence obligations.

Staying on top of that at portfolio scale had become an increasingly pressing challenge.

THE PROBLEM

Open source accelerated delivery—but multiplied governance risk.

Ad-hoc audits and developer-led reviews were no longer scaling across multiple client projects and dependency trees.

01

Version health

Outdated and unmaintained packages could accumulate unnoticed.

02

Licence exposure

Obligations across different licence types were difficult to track consistently.

03

Security posture

Multiple dependency trees made portfolio-wide oversight increasingly complex.

04

Client assurance

Clients were asking harder questions about the software supply chain.

THE NEED FOR A CLEARER VIEW

“We needed something that would surface all of that automatically.”

Claire Mirfin · Managing Director, SOtechnology

THE SOLUTION

Systematic, automated
OSS intelligence across
every connected codebase.

The Code Registry’s OSS scanning capability, powered by SCANOSS, offered the systematic solution SOtechnology needed.

Client projects were connected to secure code-vault infrastructure and immediately scanned to identify components, versions and licence information in a clear, structured dashboard.

Crucially, the output was not only readable by developers. Claire could present it directly to clients and business stakeholders without translation.

01

Identify components

Scan codebases to locate open-source components across client projects.

02

Match libraries

Match detected code against known open-source libraries.

03

Classify licences

Surface MIT, Apache-2.0, ISC, GPL and other licence information.

04

Track versions

Compare current and latest versions to reveal drift and upgrade priorities.

FRICTIONLESS ONBOARDING

Visibility without changing
how the agency worked.

The setup was quick and the value immediate. The platform consolidated intelligence across multiple client codebases without asking SOtechnology to replace its development workflow.

For an agency managing multiple codebases simultaneously, that consolidation alone was a significant win.

KEIKO LOGISTICS · CONCRETE PROOF

90+ open-source components identified and classified.

90+

COMPONENTS IDENTIFIED ACROSS CLIENT PROJECTS

52

COMPONENTS CONFIRMED AS UP TO DATE

4+

LICENCE FAMILIES SURFACED AND CLASSIFIED

SOtechnology and Keiko Logistics gained a clear baseline from which to plan structured upgrade cycles for the remaining components.

THE RESULTS

Continuous governance replaced one-off audits.

SOtechnology now has an always-on view of dependency health, licence obligations and version alignment across its client portfolio.

01

Always on

Continuous governance

02

One place

Portfolio visibility

03

No manual

Audit overhead

THE NEED FOR A CLEARER VIEW

A governance posture—not a reactive process.

The data enables SOtechnology to see what is being used, where version drift exists and where licence types may create future obligations. Intelligence that once required a dedicated audit is now always available.

GREATER CLIENT VALUE

Governance intelligence opened better commercial conversations.

Quantifying the third-party footprint across client codebases created new conversations around roadmap planning and technical investment.

Open-source visibility moved from being a governance obligation to becoming a genuine business-intelligence asset—something the agency could take directly to clients as part of the value it delivered.

01

Proactive risk management

Address version and licence concerns before they become urgent.

02

Informed roadmaps

Use evidence to guide upgrade cycles and technical investment.

03

Stronger assurance

Demonstrate to clients that their platforms meet expected standards.

WOULD CLAIRE RECOMMEND IT?

“Absolutely. Any development agency managing multiple client codebases needs this kind of visibility.”

Claire Mirfin · Managing Director, SOtechnology

FROM COMPLEXITY TO CLARITY

Move from uncertainty to complete code confidence.

Get the independent intelligence you need to understand, verify and protect your software.

Book a demo