Gain continuous visibility into your sensitive data usage and leaks originating from the source code.
Don't wait to find your sensitive data leaked in production, it's free!
Process
Why Piiano flows
Piiano Flows is a privacy code scanner that statically analyzes source code. It connects to your online source code repository or runs in a CLI. It lets you track, reveal and learn about your application's sensitive data usage and leaks.
Get to know your sensitive data posture, how data is received, shared, stored or leaked.
Learn what's going on based on our insights. Take smart decisions.
Stop chasing engineers. Be notified about sensitive code changes.
Scan your applications on a daily basis, it takes minutes.
Understand how to secure your data in the code.
Accelerate implementation and assessment of GDPR/CCPA/HIPAA/PCI-DSS.
finding types
Piiano Flows analyzes the source code and comes up with many different types of findings. It looks for how sensitive data flows inside your application, where it's stored, how it arrives, where it goes, and more.
Piiano DSPM scans for logging APIs and will flag them for you, showing a full traceback of the data flow.
Piiano DSPM scans for PII data received by RESTful APIs.
Piiano DSPM scans for PII data being shared via external SDKs and APIs
Piiano DSPM scans for PII data being stored persistently into tables in databases.
Features
Connect your Github repository in a click. Or run our CLI tool. Anyway, we don't access your production data.
Focus on PII and other sensitive data fields in the code.
Learn about identified data risks and how to fix them.
Start work with the results within minutes.
Get full and accurate coverage by our proprietary NLP ML model.
Prioritize your work, see everything in an organized and a clear way.
Everything you need to know about Piiano Flows is right here.
Before scanning your own repository, you can take a look at public repositories that we pre-scanned and get a closer look at our product and the value it provides. Alternatively, just hit the “New Scan” button, enter your GitHub repo’s URL, and click “Add Scan.”
You can scan a repository online or with our CLI tool.
Note - We do not support uploading code.
It usually takes a few minutes to scan regular repositories and up to 15 minutes or more to scan larger repositories.
If you scan a big project, it might take a while longer. However, if there are no results or you suspect an error, we appreciate it if you would report a bug, and we will investigate it. Make sure your selected repository’s code is written in the supported programming languages.
We support scanning Java projects only. Ruby and Golang are coming soon. If you want us to support an additional language, please contact us and let us know.
Our technology relies on static code analysis algorithms and innovative NLP AI algorithms.
Piiano Flows also supports running offline without sharing your code with us. In this case, it runs as a standalone docker container and can be deployed anywhere easily. Contact us to discuss pricing and terms.
Sure. On the “All Scans” page, click the three dots next to the “View Scan” button of the scan you want to share, and then click the “Share” option. Copy the URL and share it via email, Slack, or any other medium. Sharing the scanning results will not share your entire source code, only code fragments around the findings.
A code scanner tool that statically analyzes and scans your source code to identify references to and usages of sensitive data. It is helpful in order to get visibility (sensitive data posture) into privacy violations, such as PII leaks, and track relevant code changes over time.
Piiano Flows lets you find references to PII and other customers’ sensitive data in your source code in minutes instead of weeks of manual work. Knowing which sensitive data types your application collects is necessary for the following tasks:
Piiano Flows will provide you:
Piiano Flows can speed up both PIA (Privacy Impact Assessment) and DPIA (Data Protection Impact Assessment) processes by:
Once the Piiano Flows provides visibility into the risk that comes with the liability of collecting PIIs, you can start protecting this data with our vault. The Piiano Vault provides the ability to securely store the collected PIIs and simplify the compliance implementation for this data.
Data catalogs help data users make better-informed decisions about their organization’s data usage, detailing what data types are stored, where they are, how they are kept and who has access to them, among other things. Data catalog software typically includes a data discovery tool and a data classification tool which require access to production environments.
The Piiano Flows allows you to perform PII usage discovery in minutes, using only a connection to your GitHub repo.
Piiano Flows is currently completely free for online scans.
For offline scans, you will have to contact us.
Contact us if you require multiple scans in parallel or additional scans per week.
Your scan results will be saved for 30 days. After this time, they will be deleted automatically. If needed, you can rescan your repository.
No. Never. Your code will always belong to you. We never share it in any way or sell it. Our business model is based on a free tier, license, and usage payments. Your email address will be only used to send you product-related emails, and you can unsubscribe if you want.
We are a recognized team of cybersecurity experts. We love privacy and security and do our best to help companies out there know and protect their sensitive data 10x better. We’re proudly backed by one of the most notable cybersecurity VCs in the world, YL Ventures. You can read more about us here. We’re based in Tel Aviv, Israel.
We’re happy that you care so much about helping us improve our product. Please contact us. We promise to answer!
We support scanning of Java repositories only.
Ruby and Golang are coming soon, stay tuned!