Skip to main content

Prerequisites

The following lists the dependencies required by Qwiet AI by Harness to correctly analyze your app/project. We recommend ensuring that the local workstation on which Qwiet AI by Harness runs mirrors your development environment as closely as possible.

Browser requirements​

Qwiet supports the latest versions of Google Chrome and Mozilla Firefox.

Language support and requirements​

Qwiet AI by Harness is capable of analyzing applications written in the following languages:

LanguageVersions supportedExtensionsSource/CompiledStatusSCA
Apex52-60.clsSourceGAN/A
Azure Bicep.bicepSourceGAN/A
C/C++.cpp,.c++,.cxx,.hp,.hpp,.hh,
.h++,.hxx,.c,.cc,.ccm,.cxxm,
.c++m,.cp,.h,.i,.tcc
SourceGAN/A
C#C# 13 or earlier.sln, .csproj, .cs, .cshtmlSourceGAYes
Go1.12-1.27.goSourceGAYes
Groovy3.0 or later.groovySourceBetaNo
JavaJava 7-11, 14-15, 17, 21 or 23.jar, .war, .ear,
.jsp (if stored in jar)
CompiledGAYes
JavaJava 25 or earlier.javaSourceGAYes
JavaScript, TypeScriptES6.js, .jsx, .cjs, .mjs, .xsjs, .xsjslib, .ts, .tsx,.vue, .ejs, .pugSourceGAYes
Kotlin1.9.23 or earlier.ktSourceBetaYes
PHP5.4-8.3.phpSourceBetaYes
PL/SQL11g-12.2, 18c, 19c, 21c.sqlSourceGAN/A
Python3.5 to 3.13 or later.pySourceGAYes
Ruby2.x, 3.x.rb, Gemfile.lockSourceBetaYes
Rust1.95 or earlier.rs, Cargo.tomlSourceBetaYes
ScalaScala 2.12 or later.jar, .warCompiledGAYes
Swift5.10.1 or earlier.swift, .plistSourceBetaYes
T-SQLSQL Server, Azure SQL Database.sqlSourceBetaN/A
Terraform.tfSourceGAN/A

⚠️ Qwiet AI by Harness cannot analyze encrypted or obfuscated artifacts (e.g., encrypted/obfuscated JAR or WAR) or encrypted code.

SCA​

The Qwiet AI by Harness SCA supports the following languages, build tools, and package managers.

LanguageBuild tool/package format
C#.sln, .csproj, packages.config, <project>.deps.json
Gogo.mod, go.sum, Gopkg.lock
Java/ScalaMaven (pom.xml), Gradle (build.gradle, .kts), Scala (.sbt)
Node.jspackage-lock.json, pnpm-lock.yaml, yarn.lock, rush.json
Pythonsetup.py, requirements.txt, pipfile.lock, poetry.lock
RubyGemfile, Gemfile.lock
RustCargo.toml, Cargo.lock

Language-specific requirements​

Qwiet AI by Harness supports the analysis of Azure Bicep templates on workstations with Docker Desktop installed and running.

If you're integrating Qwiet AI by Harness into a CI/CD system, you must use a Linux build agent. When integrating into Azure Pipelines or GitHub Actions, make sure that you use ubuntu-latest as the VM image:

runs-on: ubuntu-latest

If you cannot use ubuntu-latest as the VM image, you may be able to use a Docker-based invocation (though few CI systems, such as GitHub Actions, support this approach). To use a Docker-based invocation, include the --use-docker flag as part of your sl analyze command:

sl analyze --app appName --use-docker --bicep .

Other tools, frameworks, and versions​

If you use a framework (or a different version from the ones listed above), it may be compatible with Qwiet. Please contact us for additional details.