The Ounce Labs offering is a software-based solution, which is actually a CASE (computer aided software engineering) utility. Ounce 4 works by reviewing code for any application to scan for security vulnerabilities before the code is posted to a development or production server.