Open-Source-Compliance / package-analysis
This repo contains license and copyright analysis results of open source packages. It further contains other license compliance relevant artifacts, which might be of value for others
☆46Updated this week
Alternatives and similar repositories for package-analysis:
Users that are interested in package-analysis are comparing it to the libraries listed below
- OSS License Open Data☆12Updated 5 years ago
- A small application which needs a better name and collects oss-license metadata and combines it☆31Updated last week
- The model for the information captured in SPDX version 3 standard.☆82Updated this week
- A rest client using shell scripts for the integration of FOSSology into a CI system☆14Updated 3 months ago
- SW360 Antenna project☆22Updated 4 years ago
- Automating Compliance Tooling Project☆21Updated 3 years ago
- free and open source software license compatibility tool.☆47Updated 3 weeks ago
- WARNING - Work in Progress - It is not Bug Free! Use with Caution. This repository contains Dockerfiles and accompanying scripts that all…☆13Updated 2 years ago
- Publications done by Double Open.☆16Updated 4 years ago
- This repo realizes the idea that OSS compliance activities will be less expensive by applying OSS principles☆86Updated this week
- SBOM Assembler - A tool to edit SBOM or assemble multiple sboms into a single sbom.☆69Updated this week
- A Python library to parse, validate and create SPDX documents.☆208Updated 2 weeks ago
- Utility that converts SBOM documents from CycloneDX to SPDX☆28Updated last year
- The Double Open Server (DOS) companion for ORT.☆15Updated this week
- Python wrapper for the Fossology API☆18Updated 3 months ago
- This tool compares two Software Bill of Materials (SBOMs) and reports the differences.☆31Updated 6 months ago
- Source for the website providing online SPDX tools☆67Updated last month
- Python library to enable scriptable control of a FOSSology server☆11Updated last year
- Python implementation of OWASP CycloneDX☆80Updated last week
- Machine learning for a FOSSology server: rigel is for mining of data from conclusions, clearing expert corrections and bulk scans, create…☆9Updated last year
- Utility library to parse, normalize and compare License expressions for Python using a boolean logic engine. For expressions using SPDX …☆66Updated last month
- Curations and configuration files for the OSS Review Toolkit.☆18Updated last week
- OSADL license compatibility matrix as a CSV☆16Updated 4 months ago
- A light-weight app to audit and inventory large codebases for open source license compliance.☆65Updated this week
- This repository stores meetings minutes for the SPDX project☆30Updated last week
- A scalable server implementation of the OSS Review Toolkit.☆34Updated this week
- GitHub action to produce a SBOM report from a given Black Duck project☆12Updated 4 months ago
- A collection of scripts for license compliance scanning, mostly experimental☆22Updated 2 weeks ago
- This is the OpenChain Telco Work Group☆14Updated this week
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆88Updated this week