# Provally > AutoProof by Provally is the proof layer for SAST findings. It verifies static analysis findings by generating safe proof-of-concepts, testing exploitability in a controlled environment, and producing evidence-backed reports with patch workflows. ## Product - [Home](/): Overview of AutoProof — the proof layer for SAST findings. - [Product](/product): AutoProof capabilities and evidence-backed patch workflows. - [How It Works](/how-it-works): The full eight-step verification pipeline. - [Integrations](/integrations): Supported SAST inputs, code hosting, and workflow integrations. - [Sample Proof Report](/sample-report): Example of an evidence-backed verification report. - [Security](/security): Data handling, verification environments, deployment options, and security practices. ## Pricing - [Pricing](/pricing): Compare AutoProof plans, pricing, features, and frequently asked questions. - [Book Demo](/book-demo): Schedule a demo of the Enterprise platform. ## Documentation - [Docs](/docs): Getting started and platform documentation. - [SARIF Import Guide](/docs/import-sarif): How to import SARIF output from any SAST tool. - [Resources](/resources): Product guides and security resources. ## Company - [About Us](/about): Mission, vision, and the team behind Provally. - [Careers](/career): Open roles and working at Provally. ## Blog - [Provally Blog](/blog/): Product, AppSec, and engineering articles. - [RSAC 2026 AppSec Series](/blog/rsac-2026-appsec-en/): Lessons for turning SAST findings into verified evidence. - [Blog index for AI systems](/blog/llms.txt): Current public articles and summaries. ## Security Guides - [SAST False Positives](/sast-false-positives): What false positives are and how to verify them. - [Prove a SAST Finding Is Exploitable](/learn/prove-sast-finding-exploitable): A practical exploitability-verification guide. - [Close the Vulnerability Patch Loop](/learn/why-poc-execution-verification-closes-the-patch-loop): Why proof execution improves patch verification. ## Legal - [Privacy Policy](/privacy): Data privacy and handling practices. - [Terms of Service](/terms): Platform terms and conditions. - [Acceptable Use Policy](/aup): Acceptable use guidelines.