Sample evidence pack

A buyer-ready release pack you can send before the first call.

This sample uses demo release data and shows how CS Code turns local scan results into security, procurement and deployment evidence a customer security team can review.

Talk through the sample pack

Share your role and deployment challenge, and we will map this sample to your restricted buyer workflow.

Release summary

Product, version, generated date, deployment model and local-first data handling note.

SBOM summary

Component totals, ecosystem counts and licence-count placeholders.

Vulnerability summary

Severity counts, top findings, fixed-version notes and source targets.

Deployment metadata

Services, ports, environment variable names and potential external endpoints.

Update diff

Changed services, ports, env vars, endpoints, components and vulnerabilities.

Approval notes

Policy result, readiness score, blockers, warnings and reviewer decision context.

What it proves

You can answer restricted buyer questions without giving them source code.

The pack demonstrates SBOM coverage, vulnerability posture, changed deployment surface, local-first boundaries and approval workflow in one shareable bundle.

Get checklist