-
Snyk helps you use open source and stay secure. Continuously find and fix vulnerabilities for npm, Maven, NuGet, RubyGems, PyPI and much more.
-
Find & fix security and compliance issues in open source libraries in real-time.
-
Open source license compliance and dependency analysis.
-
OWASP Dependency-Track is an intelligent Software Composition Analysis (SCA) platform that allows...
-
Organizations worldwide use Black Duck Software's open source management and security solutions to ensure security in their applications and containers.โAbout ยทย โWe're Hiring!
-
Black Duck Software Composition Analysis (SCA) provides a solution for managing open source security, quality, and license compliance risks that comes from the use of open source and third-party code.
-
JFrog Xray is a universal software composition analysis (SCA) solution that natively integrates with Artifactory.
-
ScanCode is a suite of utilities used to scan a codebase for license, copyright and other...
-
Mend.io offers the first AI native application security platform, purpose-built to secure AI-generated code and embedded AI components. Our unified platform enables companies to manage application risk effectively in modern software development.
-
A batteries-included system for authorization. .
-
Cerbos helps teams separate their authorization process from their core application code, making their authorization system more scalable, more secure and easier to change as the application evolves.
-
Speedy LIcense Checker and associated tools.
-
Detect what license a project is distributed under.
-
A scan and analysis system for development, legal and security for use of Open Source and other...
-
License identification tool for source code.
-
OWASP dependency-check is open-source and can be used to scan Java and .NET applications via the CLI or using plugins.Read articles Continuous Security with OWASP Dependency Check and Integrating OWASP Dependency Check with Jenkins to CI/CD.
-
Gemalto SafeNet KeySecure is a centralized cryptographic key management platform.
-
Doppins upgrades your depedencies automatically through friendly GitHub pull requests .
-
cloudscale.ch is a Swiss-based self-service cloud platform.
-
The managed cloud solution of the popular open-source Dependency-Track scans your software components for vulnerabilities and licenses compliance issues.