How does Contextual Analysis work?
Ounce automatically analyzes source code through the use of a language processor, which parses the application to create a Common Intermediate Security Language (CISL). The CISL captures multi-dimensional information about each call site, allowing Ounce to refine vulnerability data through three different levels of analysis.