AppSecOne - Security Posture Dashboard | POLPROG Skip to content

AppSecOne

Security Posture Dashboard

Security posture across your entire portfolio - one dashboard.

Developer Tool Python 3.12+
Official product page Publisher: POLPROG
Official product page
4
Themes
464
Tests
2
Languages
15+
API Endpoints
01 / AppSecOne

About

AppSecOne is an open-source security posture dashboard that gives engineering teams a portfolio-wide view of vulnerabilities, dependency risks, and remediation progress. The interactive dashboard provides real-time security scoring, repository-level detail views, and actionable guidance for fixing issues. Features include four visual themes, 15+ API endpoints for integration, multi-language support, and comprehensive test coverage with 464 tests.

02 / Use case

What it solves

The problem
  • Someone eyeballs the release decision
  • The vulnerability list is exported from Fortify by hand
  • Nobody knows whether things are improving
The outcome
  • The same thresholds decide in every repository
  • The dashboard pulls fresh scan results itself
  • Portfolio history shows the trend and weaker teams
Who it is for
  • Application security teams
  • Engineering managers
  • Release coordinators
03 / Key Features

Key Features

The most important capabilities, explained in practical terms.

Portfolio Dashboard

See the security posture of every repository in your organisation at a glance - aggregated vulnerability counts, severity breakdown, and trend indicators.

Repository Detail View

Drill into any repository to see individual findings, affected dependencies, CVSS scores, and recommended remediation steps.

Vulnerability Tracking

Continuously monitor known vulnerabilities across all dependencies with automatic severity classification and deduplication.

Remediation Guidance

Actionable fix suggestions for every finding - upgrade paths, patch availability, and workaround notes to accelerate resolution.

REST API

15+ API endpoints for programmatic access - integrate security data into CI/CD pipelines, Slack bots, or custom dashboards.

Four Visual Themes

Choose from light, dark, high-contrast, or system-default themes - each designed for readability during long triage sessions.

Multi-Language Support

Full interface localisation in two languages with easy extension to additional locales via JSON translation files.

Comprehensive Test Suite

464 automated tests covering API endpoints, data processing, UI components, and edge cases - ensuring reliability with every release.

04 / Download

Product access

A clear path from the official source to your first successful workflow.

Choose the right platform

Use one of the official links available for your device or browser.

Install or open

Follow the store instructions or open the web application. No third-party installers.

Configure and begin

Review the options, choose your preferences and start with the core workflow.

Official access options
05 / Technology

Technology behind the product

A transparent look at the core technologies used to build and maintain this product.

Python
D3
Docker
06 / Security

Privacy & Security

Your security data stays on your infrastructure. AppSecOne processes everything locally.

Local Data Processing All vulnerability data is stored in a local SQLite database. No cloud services, no external data transmission.
No Telemetry AppSecOne does not collect, store, or transmit any usage analytics or telemetry data.
No Account Required Runs on your servers behind your firewall. Communicates only with your Fortify SSC instance.
Open Source (AGPL-3.0)
Self-Hosted