SCANOSS and ISIT Partner to Strengthen Open Source Compliance in French-Speaking Embedded Markets
- Giuliana Bruni

- 2 days ago
- 2 min read
Madrid, Spain – SCANOSS, is partnering with ISIT, a specialist in real-time embedded and safety-critical systems, to help organisations in French-speaking Europe gain better visibility and control over their open source usage.
From automotive and medical devices to industrial and IoT systems, ISIT has built a strong reputation for combining tools, consulting and training to support safety, security and software quality. Their portfolio spans code quality, cybersecurity, fieldbus and industrial network solutions, as well as compliance services for complex, regulated environments.
ISIT already delivers training and advisory services on key standards and regulations for embedded and safety-critical development, including CRA-focused courses. By combining this regulatory expertise with SCANOSS datasets, ISIT can support customers who want to move from one-off compliance projects to continuous governance embedded in their development process.
“A typical use case is an embedded device with years of accumulated code, multiple suppliers and limited documentation. With SCANOSS, ISIT can help customers make software transparency practical in real-world environments.” Charles Facey, SCANOSS Partner Sales Manager.
ISIT will support French-speaking customers in France, Belgium, Luxembourg and Switzerland with local language enablement, first-line support and training. SCANOSS will provide its SCANOSS KB and datasets as the underlying open source risk intelligence layer, ready to integrate into existing CI/CD pipelines and toolchains.
“At ISIT, we see our partnership with SCANOSS as a key enabler for stronger software transparency in embedded and regulated industries. SCANOSS gives both development teams and governance functions clear, actionable visibility into open-source usage—identifying undeclared components, mapping dependencies, and quantifying license and vulnerability exposure with high accuracy. Integrated into CI/CD pipelines, it enables continuous, data-driven software governance that scales with system complexity and regulatory demands.” Frederic Maraval, ISIT Product Manager.
Together, SCANOSS and ISIT aim to give embedded and industrial companies a realistic path to stronger software transparency, replacing ad hoc audits and static compliance documents with repeatable processes and living inventories that keep pace with modern development and evolving regulation.

About SCANOSS
SCANOSS provides deep visibility into the software supply chain, powered by the SCANOSS KB, to help organisations detect undeclared open source. SCANOSS is designed to integrate into existing developer and DevSecOps workflows, making software transparency part of everyday engineering practice.
About ISIT
ISIT is a French company specialising in real-time and embedded systems, software quality and cybersecurity for safety- and mission-critical applications. ISIT combines tools, consulting and training to help engineering teams design, develop and certify secure and reliable systems.


