This page is designed to help you find out whether SourceTrust.dev is good and if it is the right choice for you.
Almost every software product is built on open-source packages. Each package comes with a license, and most licenses ask for something in return: keep the copyright notice, include the license text, or share your changes. When a customer's procurement or legal team reviews a vendor, they increasingly ask for proof that this is handled and kept up to date.
SourceTrust makes that proof simple to produce and simple to read. Import the dependency file you already have (lockfiles for JavaScript, Python, Java, Go, Rust, .NET, Ruby, PHP, Swift and Dart, or a CycloneDX or SPDX SBOM). SourceTrust lists every package with its license and explains in plain language what that license asks of you. You review each item, then publish a branded, public attestation page at your own URL or custom domain. Anyone can read it in a few minutes, no login needed. Connect a GitHub repository and imports run automatically, so the page stays current when you ship a new version.
Exports in CycloneDX, SPDX, NOTICE, CSV, JSON, HTML and PDF fit the questionnaires and vendor portals your customers use. Creating projects, importing and reviewing is free. Public GitHub repositories can publish their page for $0. Paid plans are $29 per project per month or $299 per year, with no per-user fees.
SourceTrust gives you an operational record you can share, not legal advice.
Listed in
Public attestation page
Branded, public compliance page at your own URL or custom domain. Readable in minutes, no login needed.
Dependency import
Lockfiles for JavaScript, Python, Java, Go, Rust, .NET, Ruby, PHP, Swift and Dart, or a CycloneDX or SPDX SBOM.
Export Formats
CycloneDX, SPDX, NOTICE, CSV, JSON, HTML and PDF for vendor questionnaires and portals.
SourceTrust turns the dependency list you already have into a reviewed, public compliance page: every open-source package you ship, its license, and what you did about each obligation. Each license is explained in plain language, you review each item, and the result is published at your own URL or custom domain. Anyone can read it in a few minutes, no login needed.
We have collected here some useful links to help you find out if SourceTrust.dev is good.
Check the traffic stats of SourceTrust.dev on SimilarWeb. The key metrics to look for are: monthly visits, average visit duration, pages per visit, and traffic by country. Moreoever, check the traffic sources. For example "Direct" traffic is a good sign.
Check the "Domain Rating" of SourceTrust.dev on Ahrefs. The domain rating is a measure of the strength of a website's backlink profile on a scale from 0 to 100. It shows the strength of SourceTrust.dev's backlink profile compared to the other websites. In most cases a domain rating of 60+ is considered good and 70+ is considered very good.
Check the "Domain Authority" of SourceTrust.dev on MOZ. A website's domain authority (DA) is a search engine ranking score that predicts how well a website will rank on search engine result pages (SERPs). It is based on a 100-point logarithmic scale, with higher scores corresponding to a greater likelihood of ranking. This is another useful metric to check if a website is good.
The latest comments about SourceTrust.dev on Reddit. This can help you find out how popualr the product is and what people think about it.
Do you know an article comparing SourceTrust.dev to other products?
Suggest a link to a post with product alternatives.
Is SourceTrust.dev good? This is an informative page that will help you find out. Moreover, you can review and discuss SourceTrust.dev here. The primary details have been verified within the last quarter. So they could be considered up to date. If you think we are missing something, please use the means on this page to comment or suggest changes. All reviews and comments are highly encouranged and appreciated as they help everyone in the community to make an informed choice. Please always be kind and objective when evaluating a product and sharing your opinion.