Are You in Control? AppControl Expands Visibility with JavaScript Intelligence and Dependency Mapping

October 6, 2025 – Blue Storm, the leading provider of Mendix governance solutions, today announced the September release of AppControl, extending its already robust vulnerability detection framework to include JavaScript libraries. Combined with new dependency mapping and enriched metadata, this release delivers another leap forward in visibility and control for platform teams.

AppControl already detects vulnerabilities across Java libraries, Mendix modules, custom widgets, and Mendix Runtime versions. With this release, JavaScript libraries used in widgets, themes, and modules are now scanned daily for known vulnerabilities, completing the picture. Whether introduced directly by developers or buried inside third-party components, risky libraries are now surfaced automatically—so platform teams can act before issues escalate.

In addition to vulnerability detection, AppControl now maps component relationships—such as which modules or widgets depend on specific Java or JavaScript libraries—and enriches each package with license, vendor, and source details from the NPM Registry. The result is clearer oversight, better audit readiness, and stronger governance posture across the full Mendix app stack.

“You can’t govern what you can’t see,” said Andrew Whalen, Founder of Blue Storm. “This release extends the same level of intelligence we’ve built for Java and Mendix internals to the ever-growing JavaScript layer. Governance is now more complete, more connected, and more real-time.”

AppControl continues to evolve as the enterprise governance layer for the Mendix lifecycle—Develop, Deploy, Monitor, and Control.


🔍 Highlights of the September AppControl Update

JavaScript Vulnerability Detection Added to Existing Framework
AppControl now scans JavaScript libraries daily for vulnerabilities—extending existing coverage of Java libraries, Mendix modules, custom widgets, and Runtimes.

JavaScript Library Detection
JavaScript libraries used in modules, widgets, and themes are now automatically detected and included in Insights.

Component Dependency Mapping
See which modules and widgets rely on which Java or JavaScript libraries—enabling smarter analysis and impact assessments.

Library Metadata Enrichment
Each detected JavaScript package is enriched with daily data from the NPM Registry: license, vendor, homepage, and download URL.


🔧 Governance Fixes and Enhancements

[POLICIES] DOM_0003 XPath Support Expanded
The DOM_0003 policy now supports any XPath constraint using %CurrentUser%, not just those referencing System.Owner.

[UI & SUPPORT] Accurate Feedback Count
The system status bar (visible to Platform Administrators) now correctly reflects the number of open feedback items.


About AppControl

AppControl is the enterprise governance solution for Mendix. Built for platform, governance, and DevOps teams, AppControl simplifies oversight, enforces compliance, and provides end-to-end visibility across the Mendix application lifecycle: Develop, Deploy, Monitor, and Control. Its real-time governance reports, active controls, and fine-grained access roles empower organizations to answer once and for all, “Are you in control?”

For more information, visit www.bluestorm.io/appcontrol.


About Blue Storm

Blue Storm specializes in governance and application management solutions for the Mendix platform, empowering enterprise teams to manage application portfolios with confidence, control, and compliance. Committed to customer success, Blue Storm delivers innovative tools designed to meet the evolving needs of large-scale Mendix environments.