Section 8.4 - Register entry
DOC-REF: FRC-MKT-FR2427142353
AutoRABIT for Public Sector - CodeScan, Guard, & ARMOR
AutoRABIT Holding, Inc. lists AutoRABIT for Public Sector - CodeScan, Guard, & ARMOR on the FedRAMP Marketplace with the status FedRAMP Certified, at Moderate impact, on the Agency path under the Rev5 process. Package FR2427142353, read from the marketplace feed as of September 3, 2026.
Section A. Register entry
What the marketplace records
- FedRAMP package ID
- FR2427142353
- Cloud service provider
- AutoRABIT Holding, Inc.
- Certification status
- FedRAMP Certified
- Impact level
- Moderate
- Certification class
- Class C (Moderate)
- Authorization path
- Agency
- Certification type
- Rev5
- Marketplace phase
- Ongoing Certification
- Deployment model
- Government Community Cloud
- Register snapshot
- September 3, 2026
- Service model
- SaaS
- Independent assessor
- Schellman Compliance, LLC
- Certification date
- November 24, 2025
- Status date
- November 24, 2025
- Annual assessment
- March 26, 2011
- Agency authorizations
- 1
- Business categories
- Development Tools
- SAM.gov UEI
- WGNBES7Y1ZT8
- Small business
- Flagged on the marketplace record
- Milestones on record
- 3
The marketplace carries AutoRABIT for Public Sector - CodeScan, Guard, & ARMOR under package FR2427142353 with 20 recorded fields. Its certification date is November 24, 2025. Schellman Compliance, LLC is named as the independent assessor, with an annual assessment date of March 26, 2011. 1 agency is listed as having authorized it, among them Department of Veterans Affairs. It is delivered as SaaS on a government community cloud, filed under 1 business categories including Development Tools. Its SAM.gov unique entity identifier is WGNBES7Y1ZT8. AutoRABIT Holding, Inc. is flagged as a small business on the record.
Section B. Milestones
3 entries in the marketplace event log
Most recent first, as recorded by FedRAMP.
| Date | Category | Recorded |
|---|---|---|
| November 24, 2025 | Status Change | Status changed from PMO Review to FedRAMP Certified |
| October 21, 2025 | Status Change | Status changed from Agency Review to FedRAMP In Process |
| June 30, 2025 | Status Change | Status set to Agency Authorization In Process |
Section C. Cost context
What reaching Moderate costs
Our own published ranges for a provider going through this level. Nothing here is a figure this provider has disclosed.
Cost context
Budget for a Moderate authorization
Our published planning range for a provider pursuing Moderate. It is not a figure any listed provider has disclosed.
Read the FedRAMP Moderate cost guide / annual assessment cost / continuous monitoring cost
Path
Agency Authorization is the route for 578 of the offerings on the marketplace. Our cost pages put it at $800,000 to $2,000,000 over 12 to 18 months for Moderate. Agency authorization cost
Assessment and monitoring
An annual assessment date of March 26, 2011 is on the record, and that assessment recurs for as long as the package stays listed. Annual assessment cost / continuous monitoring cost
Section E. Agencies on the record
1 agency listed against this package
As published on the marketplace. An agency named here has issued its own authorization to operate; FedRAMP does not issue ATOs itself.
- Department of Veterans Affairs
Section G. Nearest entries on the register
Comparable offerings
Scored on impact level, path, status, shared business categories and how close the two entries sit in the register's own timeline.
- Bugcrowd for Government (BCGOV)
Bugcrowd Inc.
FedRAMP Certified, Moderate impact, Agency path, Rev5, certified February 19, 2026.
- ThreatConnect For Government
ThreatConnect
FedRAMP Certified, Moderate impact, Agency path, Rev5, certified May 1, 2025.
- Atlassian Government Cloud
Atlassian
FedRAMP Certified, Moderate impact, Agency path, Rev5, certified March 14, 2025.
- Figma for Government
Figma
FedRAMP Certified, Moderate impact, Agency path, Rev5, certified February 28, 2025.
- Civis Platform
Civis Analytics, Inc.
FedRAMP Certified, Moderate impact, Agency path, Rev5, certified February 5, 2025.
Section H. Description
As published on the marketplace
The provider's own description of the service, reproduced from the FedRAMP feed without edits.
CodeScan is a static code analysis tool that seamlessly integrates with the development and deployment processes of Salesforce and scans for code vulnerability and quality checks along the process. Besides that, to improve and enforce code standardization, it also allows you to define the quality profiles and the quality gates, which gives you the ability to enforce standards and use this tool to educate your developers. CodeScan is a company-built application and developed using Amazon RDS for PostgreSQL and has capabilities to integrate with external systems. CodeScan offers more than 700 built-in rules for security and quality along with the provision to define your own rules. Guard provides enterprises with an automated, proactive approach to Salesforce security. Instead of relying on manual reviews and reactive fixes, Guard continuously monitors for security gaps, enforces policies at scale, and automatically remediates issues before they become critical threats. With AutoRABIT Guard, enterprises can transform their Salesforce environments from a security liability into a well-governed, compliant, and resilient system without slowing down innovation or burdening teams with manual processes. By making security seamless, AutoRABIT Guard ensures that organizations can confidently scale their Salesforce investment while meeting the highest security and compliance. ARMOR is a centralized DevSecOps and Release Management platform for Salesforce that unifies CI/CD, environment management, and data migration into a secure pipeline. It enforces governance through policy-driven automation, pre-deployment security analysis, and immutable audit trails, ensuring strict configuration control and metadata integrity across the software development lifecycle.
Next step
What the same authorization would cost you
The worksheet turns an impact level, an existing security posture and an organization size into a line-by-line budget, with the 3PAO fee split out.
Provenance and independence
Source: the FedRAMP Marketplace product feed, produced by the General Services Administration. The feed's own last-change stamp is September 3, 2026; this copy was taken on September 5, 2026.
GSA's disclaimers page states that FedRAMP content about a specific commercial product or service is provided for the information and convenience of the public and “does not constitute endorsement, recommendation, or favoring by the General Services Administration”. A listing here is a record of a certification status, not a judgment about the product.
FedRAMPCost.com is an independent cost reference. We are not affiliated with FedRAMP, the GSA, any provider listed on this page, or any assessment organization, and no provider pays to appear in this register.