SAMMY works best on screens 1024px wide or larger.
Maturity Level 1
Maturity Level 2
Maturity Level 3
Identify unused applications
O-OM-B-1: Do you identify and remove systems, applications, application dependencies, or services that are no longer used, have reached end of life, or are no longer actively developed or supported?
  • You do not use unsupported applications or dependencies
  • You manage customer/user migration from older versions for each product and customer/user group
Description

Benefit

Identification of unused of software assets or components

Activity

Identify unused applications on an ad hoc basis, either by chance observation, or by occasionally performing a review. When you identify unused applications, process those findings for further action. If you have established a formal process for decommissioning unused applications, ensure teams are aware of and use it.

Manage customer/user migration from older versions of your products for each product and customer/user group. When a product version is no longer in use by any customer/user group, discontinue support for that version. However, at this level of maturity you may have a large number of product versions in active use across the customer/user base, requiring significant developer effort to back-port product fixes.

OWASP Team guidance

application.assessment.team_guidance_tooltip

Community guidance

application.assessment.community_guidance_tooltip