Software Alternatives & Reviews

FOSSA

Open source license compliance and dependency analysis

Top 12 Open-Source Alternatives to FOSSA

Snyk OWASP Dependency-Track SonarQube ESLint Aikido Security Sysdig

Summary

The top open-source alternatives to FOSSA are Snyk, OWASP Dependency-Track, and SonarQube. One of the criteria for ordering this list is the number of mentions that products have on reliable external sources. You can suggest additional sources through the form here.
  1. 1
    Snyk helps you use open source and stay secure. Continuously find and fix vulnerabilities for npm, Maven, NuGet, RubyGems, PyPI and much more.
    Pricing:
    • Open Source

    #Security #Security Monitoring #Security CI 85 social mentions

  2. OWASP Dependency-Track is an intelligent Software Composition Analysis (SCA) platform that allows...
    Pricing:
    • Open Source

    #Security #Code Analysis #Security & Privacy 19 social mentions

  3. SonarQube, a core component of the Sonar solution, is an open source, self-managed tool that systematically helps developers and organizations deliver Clean Code.
    Pricing:
    • Open Source
    • Freemium
    • Free Trial
    • $150.0 / Annually

    #Code Analysis #Code Review #Code Coverage 1 social mentions

  4. Crinkler is an executable file compressor (or rather, a compressing linker) for Windows...
    Pricing:
    • Open Source

    #Security & Privacy #Software Development #Software Engineering 1 social mentions

  5. Dependency-Check is a utility that identifies project dependencies and checks if there are any...
    Pricing:
    • Open Source

    #Security #Code Analysis #Web Application Security 16 social mentions

  6. 6
    The fully pluggable JavaScript code quality tool
    Pricing:
    • Open Source

    #Code Coverage #Developer Tools #Code Quality 229 social mentions

  7. Aikido is an all-in-one platform for code & cloud security - without the irrelevant alerts.
    Pricing:
    • Open Source
    • Freemium
    • Free Trial
    • $199.0 / Monthly (Standard)

    #Web Application Security #Vulnerability Scanner #Security CI 1 social mentions

  8. 8
    Sysdig is an open source, system-level exploration that capture system state and activity from a running Linux instance, then save, filter and analyze.
    Pricing:
    • Open Source

    #Security #Monitoring Tools #Developer Tools 2 social mentions

  9. 9
    Watching your Node.js dependencies
    Pricing:
    • Open Source

    #License Management #Security & Privacy #OS & Utilities

  10. A way to view code based on dependencies analysis.
    Pricing:
    • Open Source

    #Continuous Integration #Developer Tools #Security

  11. 11
    Helps you to keep your dependencies updated and secure.
    Pricing:
    • Open Source

    #License Management #OS & Utilities #Security & Privacy 2 social mentions

  12. Stop wasting your time checking manually if some piece of software is updated. Get Email, Slack, Telegram, Discord, Hangouts Chat, Microsoft Teams, Mattermost, Rocket.Chat, or Webhooks notifications.
    Pricing:
    • Open Source
    • Free

    #Software Development #News #DevOps Services 18 social mentions

Suggest an alternative
If you think we've missed something, please suggest an alternative to FOSSA.
Please use the Feedback button if you think any of the listed products shouldn't be regarded as open-source.

FOSSA discussion

Log in or Post with