Security/INFOSEC approvals

We are trying to implement at an institution that requires some vetting of open sources software. Is there an example of any implementer that has overcome this approval step? Online I only see one analysis that is flagging an issue with an older WebAPI version.

Analysis on webAPI Ohdsi Webapi - Security Database

Hi George. Please feel free to reach out to me directly at gregory.klebanov@odysseusinc.com. Our company has been deploying ATLAS/WebAPI to Healthcare institutions and Pharma companies for several years now and we have a lot of experience working with internal security and compliance teams - happy to share