Stop guessing. Get a forensic "White Box" assessment of your software’s health.

You built custom software to give your business an edge. But lately, that asset feels more like a liability.

### Fear of deploying

Do you hold your breath every time you release an update?

### Lost knowledge

Did the original developers leave, taking the "how it works" with them?

### Performance drift

Is the system slower, buggier, or crashing more often?

### You don’t need a rewrite yet. You need a diagnosis

Let us assess and report back on the state of your .NET software.

## What is the Legacy Stability Audit?

This is the first step in our **Audit > Stabilise > Modernise** framework.

Over 3 to 5 days, our senior directors perform a **"White Box"** review. We don't just look at the application from the outside; we analyse the source code, database schemas, and infrastructure configurations to identify the technical debt and structural risks that are slowing you down.

## The 5 Pillars of Our Assessment

We categorize our findings into five key areas of software health, providing you with a Red-Amber-Green (RAG) score for each.

### Architecture & Code Quality

We catalog your **Technology Stack** to identify End-of-Life (EOL) risks. We then measure **Maintainability & Technical Debt**, scanning for:

- Cyclomatic Complexity & Class Coupling (how hard is it to change?)
- 3rd Party Library risks (Nuget packages)
- Code Hygiene & Standardisation

### Database Health Check

A poor data layer impedes scalability. We review:

- Structural Integrity: Does the schema enforce data correctness?
- Indexing & Performance: Identifying missing indexes and slow queries.
- ORM Review: Checking for anti-patterns like "N+1 queries" or over-fetching data.

### DevOps & Infrastructure

We review the maturity of your build and deployment environment:

- **Source Control (Git):** Are you using proper branching strategies or suffering from "Spaghetti merges"?
- **CI/CD Automation:** Moving you away from manual "works on my machine" deployments.
- **Infrastructure as Code (IaC):** Ensuring your environment is reproducible and drift-free.

### Security & Compliance

We identify vulnerability exposure and adherence to secure coding standards, looking for:

- **Vulnerabilities:** SQL Injection, XSS, and secrets hidden in source code.
- **Error Handling:** Ensuring failures don't leak sensitive system details to attackers.
- **Database Access:** Verifying the "Principle of Least Privilege".

## Auditing & Data Retention

We ensure your system is compliant and traceable:

- **Traceability:** Can you track who did what and when (logins, data mods)?
- **Lifecycle Management:** Do you have a strategy for archiving or deleting old data to reduce GDPR liability?

## The Deliverables: No Fluff, Just Action

You won't get a generic report. You receive a structured Executive Summary and detailed technical appendix containing:

### RAG Scorecard:

A clear visualization of your system's health across all 5 pillars.

### Risk Registry:

A prioritized list of findings (e.g., "Critical: Unencrypted connections" vs. "Low: Comment Density").

### The Modernisation Roadmap:

A strategic plan to Stabilise the patient now and Modernise it later.

### Who is this for?

- **MDs & Founders:** Who need to know if their technical investment is safe.
- **IT Managers:** Who inherited a system they didn't build and need a map of the territory.
- **Investors:** Who need technical due diligence before acquiring a company with custom IP.

## Why Innovensa?

We are a Hertfordshire-based team of senior developers and architects. We don't outsource this work.

When you hire us, you get the directors—experts who have spent decades rescuing, stabilizing, and modernizing .NET systems.

### Take the First Step

Don't let technical debt dictate your business strategy.

**Price:** **Fixed fee** (Contact for details). **Duration:** Typically 3-5 Days. **Confidentiality:** All findings are strictly confidential to your organisation.
