{"id":8992,"date":"2023-06-14T13:34:56","date_gmt":"2023-06-14T10:34:56","guid":{"rendered":"https:\/\/cycode.com\/?p=8992"},"modified":"2025-04-08T09:07:25","modified_gmt":"2025-04-08T13:07:25","slug":"introducing-bearer-cloud","status":"publish","type":"post","link":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/","title":{"rendered":"Introducing Bearer Cloud"},"content":{"rendered":"<section id=\"\">Today, we\u2019re pleased to announce a new approach to help teams manage application code security at scale supercharged with deep sensitive data context,\u00a0 and ship trustworthy products faster.<\/p>\n<\/section>\n<section id=\"Using-SAST-effectively-at-scale-is-painful\">\n<h2>Using SAST effectively at scale is painful<\/h2>\n<p>When you talk to teams that use security products on larger applications or codebases, you quickly find that SAST products elicit quite a negative response. These static application security testing tools are slow, generate an excessive amount of alerts, have a high false positive volume, and don\u2019t always play nice with multi-language projects and monorepos.<\/p>\n<p>To add to these problems most SAST products require a deep level of security knowledge to be used effectively, but developers aren\u2019t expected to be security experts. They don\u2019t have time to get deeply trained in triaging and keeping up with security risks, and security teams don\u2019t have the capacity to act as go-betweens at the speed of engineering delivery nowadays.<\/p>\n<p>To solve these problems, we launched Bearer CLI\u2014our new take on SAST\u2014three months ago. Open source and developer-first from the ground up. It uses sensitive data context already available in the code to generate developer-friendly findings prioritized to optimize their efforts, supports multi-language and multi-framework codebases, and offers an expansive rule system that is extensible by the community.<\/p>\n<p>The community responded immediately, and since its launch in early March 2023, Bearer CLI saw:<\/p>\n<ul role=\"list\">\n<li>30k+ scans<\/li>\n<li>6k+ downloads<\/li>\n<li>1.1k+ stars on GitHub<\/li>\n<\/ul>\n<p>Adoption has been incredible, and that\u2019s why we\u2019re happy to share the next layer on top of our open source tool. Today, we\u2019re announcing\u00a0<strong>Bearer Cloud<\/strong><strong>.<\/strong><\/p>\n<\/section>\n<section id=\"Application-code-security-managed\">\n<h2>Application code security, managed<\/h2>\n<p>Bearer Cloud is designed to fit your existing workflows and help manage application code security at scale by adding the magic of collaboration and organization to Bearer CLI. This allows you to combine sensitive data context with static code analysis to make security and privacy engineering simpler and smarter to maximize the ROI for your DevSecOps and central security team driven programs. Key features include:.<\/p>\n<ul role=\"list\">\n<li><strong>Custom-built SAST engine<\/strong>. Bearer Cloud is powered by our open source SAST engine, Bearer CLI. It discovers sensitive data flows and associated security risks and vulnerabilities, including OWASP\u2019s most critical risk categories with over 100 built-in rules.<\/li>\n<li><strong>Finding management<\/strong>. Bearer Cloud\u2019s findings inbox gives you insight into code across your organization. Collaborate effectively and triage threats as they\u2019re detected.<\/li>\n<li><strong>Continuous threat modeling<\/strong>. The platform allows you to optimize your efforts by detecting services, applications, and coding repositories containing PII, PHI etc. privacy-relevant data types, and software supply chain risks to external API components.<\/li>\n<li><strong>Automated business impact prioritization<\/strong>. Our severity algorithm helps your team filter and prioritize risks in the context of sensitive data. This way, you can focus on the findings with high business impact.<\/li>\n<li><strong>Remediation advice with every scan<\/strong>. Allow your developers to automatically assess code security issues and fix them before merging. Bearer Cloud provides actionable remediation advice without slowing your team down.<\/li>\n<li><strong>Security posture reporting<\/strong>. Track security improvements over time and discuss progress with your stakeholders using Bearer Cloud\u2019s KPIs and reporting feature.<\/li>\n<li><strong>Automatic privacy reports<\/strong>. Automatically generate reports that show sensitive data processed by each application, associated data subjects, and any third-party risks associated with it. Help your privacy and compliance teams with the information they need for GDPR and other frameworks.<\/li>\n<li><strong>SCM, CLI, CI\/CD integrations<\/strong>: Scan your codebase wherever it lives. We have integrations for GitLab and GitHub, easy setup with other CI\/CD platforms, and a fast CLI tool for local development.<strong>\u200d<\/strong><\/li>\n<li><strong>Enterprise collaboration and workflow compatible<\/strong>: We\u2019re launching with out-of-the-box support for Slack and Jira, so you can connect Bearer Cloud with the tools you already use across the organization.<\/li>\n<\/ul>\n<\/section>\n<section id=\"Get-started\">\n<h2>Get started<\/h2>\n<p>Ready to scale your application code security program? If you haven\u2019t already, run a scan with Bearer CLI. It\u2019s open source, free, installs in minutes, and provides immediate value for your engineering, security, and even privacy and compliance teams.<\/p>\n<p>If you\u2019re already familiar with\u00a0<a href=\"http:\/\/github.com\/bearer\/bearer\">Bearer CLI<\/a>\u00a0and want to manage your application code security at scale,\u00a0<a href=\"https:\/\/cycode.com\/book-a-demo\">book a demo<\/a>\u00a0to see everything that Bearer Cloud has to offer.<\/p>\n<\/section>\n","protected":false},"excerpt":{"rendered":"<p>Today, we\u2019re pleased to announce a new approach to help teams manage application code security at scale supercharged with deep sensitive data context,\u00a0 and ship trustworthy products faster. Using SAST effectively at scale is painful When you talk to teams that use security products on larger applications or codebases, you quickly find that SAST products &#8230; <a title=\"Introducing Bearer Cloud\" class=\"read-more\" href=\"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/\" aria-label=\"Read more about Introducing Bearer Cloud\">Read more<\/a><\/p>\n","protected":false},"author":54,"featured_media":9175,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"inline_featured_image":false,"footnotes":"","_links_to":"","_links_to_target":""},"categories":[13],"tags":[],"class_list":["post-8992","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-blog"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v27.7 (Yoast SEO v27.7) - https:\/\/yoast.com\/product\/yoast-seo-premium-wordpress\/ -->\n<title>Introducing Bearer Cloud - Cycode<\/title>\n<meta name=\"description\" content=\"Introducing a new approach that helps teams manage application code security at scale.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Introducing Bearer Cloud - Cycode\" \/>\n<meta property=\"og:description\" content=\"Introducing a new approach that helps teams manage application code security at scale.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/\" \/>\n<meta property=\"og:site_name\" content=\"Cycode\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/cycodesec\" \/>\n<meta property=\"article:published_time\" content=\"2023-06-14T10:34:56+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2025-04-08T13:07:25+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/cycode.com\/wp-content\/uploads\/2023\/06\/Blog-Introducing-Bearer-Cloud.png\" \/>\n\t<meta property=\"og:image:width\" content=\"1358\" \/>\n\t<meta property=\"og:image:height\" content=\"740\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Bearer Team\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@CycodeHQ\" \/>\n<meta name=\"twitter:site\" content=\"@CycodeHQ\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Bearer Team\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":[\"Article\",\"BlogPosting\"],\"@id\":\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/\"},\"author\":{\"name\":\"Bearer Team\",\"@id\":\"https:\\\/\\\/cycode.com\\\/#\\\/schema\\\/person\\\/9d505ef85b6f17141a1d6f6d8c7499d9\"},\"headline\":\"Introducing Bearer Cloud\",\"datePublished\":\"2023-06-14T10:34:56+00:00\",\"dateModified\":\"2025-04-08T13:07:25+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/\"},\"wordCount\":694,\"publisher\":{\"@id\":\"https:\\\/\\\/cycode.com\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/cycode.com\\\/wp-content\\\/uploads\\\/2023\\\/06\\\/Blog-Introducing-Bearer-Cloud.png\",\"articleSection\":[\"BLOG\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/\",\"url\":\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/\",\"name\":\"Introducing Bearer Cloud - Cycode\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/cycode.com\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/cycode.com\\\/wp-content\\\/uploads\\\/2023\\\/06\\\/Blog-Introducing-Bearer-Cloud.png\",\"datePublished\":\"2023-06-14T10:34:56+00:00\",\"dateModified\":\"2025-04-08T13:07:25+00:00\",\"description\":\"Introducing a new approach that helps teams manage application code security at scale.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/#primaryimage\",\"url\":\"https:\\\/\\\/cycode.com\\\/wp-content\\\/uploads\\\/2023\\\/06\\\/Blog-Introducing-Bearer-Cloud.png\",\"contentUrl\":\"https:\\\/\\\/cycode.com\\\/wp-content\\\/uploads\\\/2023\\\/06\\\/Blog-Introducing-Bearer-Cloud.png\",\"width\":1358,\"height\":740},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/cycode.com\\\/blog\\\/introducing-bearer-cloud\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/cycode.com\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Introducing Bearer Cloud\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/cycode.com\\\/#website\",\"url\":\"https:\\\/\\\/cycode.com\\\/\",\"name\":\"Cycode\",\"description\":\"Complete Software Supply Chain Security\",\"publisher\":{\"@id\":\"https:\\\/\\\/cycode.com\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/cycode.com\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/cycode.com\\\/#organization\",\"name\":\"Cycode\",\"url\":\"https:\\\/\\\/cycode.com\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/cycode.com\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/cycode.com\\\/wp-content\\\/uploads\\\/2025\\\/11\\\/fav2.png\",\"contentUrl\":\"https:\\\/\\\/cycode.com\\\/wp-content\\\/uploads\\\/2025\\\/11\\\/fav2.png\",\"width\":28,\"height\":29,\"caption\":\"Cycode\"},\"image\":{\"@id\":\"https:\\\/\\\/cycode.com\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/cycodesec\",\"https:\\\/\\\/x.com\\\/CycodeHQ\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/cycode\\\/\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/cycode.com\\\/#\\\/schema\\\/person\\\/9d505ef85b6f17141a1d6f6d8c7499d9\",\"name\":\"Bearer Team\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/cycode.com\\\/wp-content\\\/uploads\\\/2024\\\/05\\\/Bearer_blog-1.svg\",\"url\":\"https:\\\/\\\/cycode.com\\\/wp-content\\\/uploads\\\/2024\\\/05\\\/Bearer_blog-1.svg\",\"contentUrl\":\"https:\\\/\\\/cycode.com\\\/wp-content\\\/uploads\\\/2024\\\/05\\\/Bearer_blog-1.svg\",\"caption\":\"Bearer Team\"},\"url\":\"https:\\\/\\\/cycode.com\\\/blog\\\/author\\\/bearer-team\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"Introducing Bearer Cloud - Cycode","description":"Introducing a new approach that helps teams manage application code security at scale.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/","og_locale":"en_US","og_type":"article","og_title":"Introducing Bearer Cloud - Cycode","og_description":"Introducing a new approach that helps teams manage application code security at scale.","og_url":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/","og_site_name":"Cycode","article_publisher":"https:\/\/www.facebook.com\/cycodesec","article_published_time":"2023-06-14T10:34:56+00:00","article_modified_time":"2025-04-08T13:07:25+00:00","og_image":[{"width":1358,"height":740,"url":"https:\/\/cycode.com\/wp-content\/uploads\/2023\/06\/Blog-Introducing-Bearer-Cloud.png","type":"image\/png"}],"author":"Bearer Team","twitter_card":"summary_large_image","twitter_creator":"@CycodeHQ","twitter_site":"@CycodeHQ","twitter_misc":{"Written by":"Bearer Team","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":["Article","BlogPosting"],"@id":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/#article","isPartOf":{"@id":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/"},"author":{"name":"Bearer Team","@id":"https:\/\/cycode.com\/#\/schema\/person\/9d505ef85b6f17141a1d6f6d8c7499d9"},"headline":"Introducing Bearer Cloud","datePublished":"2023-06-14T10:34:56+00:00","dateModified":"2025-04-08T13:07:25+00:00","mainEntityOfPage":{"@id":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/"},"wordCount":694,"publisher":{"@id":"https:\/\/cycode.com\/#organization"},"image":{"@id":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/#primaryimage"},"thumbnailUrl":"https:\/\/cycode.com\/wp-content\/uploads\/2023\/06\/Blog-Introducing-Bearer-Cloud.png","articleSection":["BLOG"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/","url":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/","name":"Introducing Bearer Cloud - Cycode","isPartOf":{"@id":"https:\/\/cycode.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/#primaryimage"},"image":{"@id":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/#primaryimage"},"thumbnailUrl":"https:\/\/cycode.com\/wp-content\/uploads\/2023\/06\/Blog-Introducing-Bearer-Cloud.png","datePublished":"2023-06-14T10:34:56+00:00","dateModified":"2025-04-08T13:07:25+00:00","description":"Introducing a new approach that helps teams manage application code security at scale.","breadcrumb":{"@id":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/#primaryimage","url":"https:\/\/cycode.com\/wp-content\/uploads\/2023\/06\/Blog-Introducing-Bearer-Cloud.png","contentUrl":"https:\/\/cycode.com\/wp-content\/uploads\/2023\/06\/Blog-Introducing-Bearer-Cloud.png","width":1358,"height":740},{"@type":"BreadcrumbList","@id":"https:\/\/cycode.com\/blog\/introducing-bearer-cloud\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/cycode.com\/"},{"@type":"ListItem","position":2,"name":"Introducing Bearer Cloud"}]},{"@type":"WebSite","@id":"https:\/\/cycode.com\/#website","url":"https:\/\/cycode.com\/","name":"Cycode","description":"Complete Software Supply Chain Security","publisher":{"@id":"https:\/\/cycode.com\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/cycode.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/cycode.com\/#organization","name":"Cycode","url":"https:\/\/cycode.com\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cycode.com\/#\/schema\/logo\/image\/","url":"https:\/\/cycode.com\/wp-content\/uploads\/2025\/11\/fav2.png","contentUrl":"https:\/\/cycode.com\/wp-content\/uploads\/2025\/11\/fav2.png","width":28,"height":29,"caption":"Cycode"},"image":{"@id":"https:\/\/cycode.com\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/cycodesec","https:\/\/x.com\/CycodeHQ","https:\/\/www.linkedin.com\/company\/cycode\/"]},{"@type":"Person","@id":"https:\/\/cycode.com\/#\/schema\/person\/9d505ef85b6f17141a1d6f6d8c7499d9","name":"Bearer Team","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/cycode.com\/wp-content\/uploads\/2024\/05\/Bearer_blog-1.svg","url":"https:\/\/cycode.com\/wp-content\/uploads\/2024\/05\/Bearer_blog-1.svg","contentUrl":"https:\/\/cycode.com\/wp-content\/uploads\/2024\/05\/Bearer_blog-1.svg","caption":"Bearer Team"},"url":"https:\/\/cycode.com\/blog\/author\/bearer-team\/"}]}},"_links":{"self":[{"href":"https:\/\/cycode.com\/wp-json\/wp\/v2\/posts\/8992","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/cycode.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cycode.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/cycode.com\/wp-json\/wp\/v2\/users\/54"}],"replies":[{"embeddable":true,"href":"https:\/\/cycode.com\/wp-json\/wp\/v2\/comments?post=8992"}],"version-history":[{"count":0,"href":"https:\/\/cycode.com\/wp-json\/wp\/v2\/posts\/8992\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cycode.com\/wp-json\/wp\/v2\/media\/9175"}],"wp:attachment":[{"href":"https:\/\/cycode.com\/wp-json\/wp\/v2\/media?parent=8992"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cycode.com\/wp-json\/wp\/v2\/categories?post=8992"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cycode.com\/wp-json\/wp\/v2\/tags?post=8992"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}