# Code Scanner Figures
AI-Native Scanner Coverage
The scanner evaluates AI-specific code and workflow surfaces that conventional AppSec categories do not fully describe.
Matrix showing scanner coverage across prompts, retrieval, agents, tools, MCP, authority, evidence, and lifecycle stages.
| Discovery | Analysis | Evidence | Retest | |
|---|---|---|---|---|
| Prompts and instructionsSystem prompts, templates, policy text, and instruction boundaries. | Covered | Covered | Covered | Covered |
| Retrieval and contextCorpus access, provenance, tenant boundaries, and prompt assembly. | Covered | Covered | Covered | Partial |
| Agents and orchestrationPlanning, delegation, memory, and workflow transitions. | Covered | Partial | Partial | Planned |
| Tools and MCPTool schemas, invocation boundaries, and consequence-bearing actions. | Covered | Covered | Covered | Partial |
| Identity and authorityUser, agent, service, and delegated permissions. | Covered | Partial | Partial | Planned |
| Evidence and lifecycleFinding state, provenance, remediation, and rescan behavior. | Not applicable | Covered | Covered | Covered |
Scanner Workflow
The scanner moves from target discovery through analysis, evidence grouping, remediation, and rescan.
Six-stage scanner workflow from target discovery and normalization through analysis, evidence grouping, remediation handoff, and rescan.
Scanner Output Contract
One scan can produce machine-readable findings, reviewable evidence, path inputs, and remediation-ready artifacts.
Layered scanner output stack from raw analysis evidence through structured findings, path inputs, remediation records, and reports.
AI Scanner and Conventional AppSec
AI-native analysis extends conventional code scanning by following prompts, retrieval, tools, agents, and authority through application logic.
Comparison of conventional application security analysis and AI-native analysis across code, prompt, retrieval, agent, tool, and authority relationships.