- Job title
- IT manager
- Sector
- Packaging
- Organization type
- 40-person manufacturing company
- Joined
- Oct 2024
- Message
- 4
We agreed with a software agency on a 420.000 TL budget and a 5-month delivery timeline for our B2B ordering portal where we sell industrial spare parts. The process got delayed by about two months and last week we finally reached the go-live stage. During the final sign-off meeting, while justifying part of the delay, the agency manager claimed they ran a comprehensive source code analysis prior to delivery, which supposedly ensured a much more secure and bug-free project handover.
When I checked our contract, I saw no standalone clause for this, only general testing procedures were listed. They didn't ask for any extra charge on the invoice, but I don't really understand what this analysis is what exactly it audits, or how technically valid it is for the agency that wrote the software to analyze its own code.
To anyone who has taken delivery of similar projects before: What exactly is source code analysis? Is it enough for an agency to analyze its own code, or should I have an independent specialist look at it as well?