Parse and compare package versions and ranges. From debian, npm, pypi, ruby and more. Process all the version range specs and expressions. This project is sponsored by an NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ , the Google Summer of Code, nexB and others generous sponsors!
☆49May 1, 2026Updated 3 months ago
Alternatives and similar repositories for univers
Users that are interested in univers are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Tools to create and deploy a database of software packages metadata, origin, dependencies, and license keyed by PURLs (Package URLs). Sup…☆65Updated this week
- Automate open source license compliance and ensure software supply chain integrity☆50Updated this week
- Common weakness enumeration library for Python (maintained fork of https://github.com/Julian-Nash/cwe )☆15Aug 29, 2024Updated last year
- A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sp…☆693Updated this week
- ScanCode.io is a server to script and automate software composition analysis with pipelines. This project is sponsored by the European Co…☆210Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- A python library to parse Debian deb822-style control and copyright files and all related Debian, Ubuntu and Debian-derivative manifest a…☆17Oct 2, 2025Updated 10 months ago
- The Keep It Simple Software Bill of Material☆11Jan 31, 2022Updated 4 years ago
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆91Mar 11, 2026Updated 4 months ago
- A collection of scripts for license compliance scanning, mostly experimental☆21Jun 16, 2025Updated last year
- A library for parsing security advisories☆14Jul 16, 2026Updated 3 weeks ago
- ☆51Updated this week
- The International FOSS Law Book, v.2 and onwards☆15Jan 17, 2022Updated 4 years ago
- Labeled vulnerability-package match pairs used as ground truth to evaluate vulnerability scanners☆14Jul 21, 2026Updated 2 weeks ago
- PURL to CPE Relationship mapping project.☆125Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- SupplyShield is an open-source application security orchestration framework designed to secure your software supply chain from vulnerabil…☆17Jul 13, 2026Updated 3 weeks ago
- Cisco Teams bot for Gerrit code reviews.☆13Mar 28, 2023Updated 3 years ago
- apt2sbom python package generates SPDX or CycloneDX files from Ubuntu APT and Python packaging information☆25Feb 4, 2022Updated 4 years ago
- ☆18Updated this week
- A proving grounds for young and aspiring BBOT modules☆15Apr 1, 2026Updated 4 months ago
- ☆20Nov 14, 2024Updated last year
- Vulnerability Management with SBOM☆20Updated this week
- A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby☆1,090Updated this week
- This is a mapping of CPEs to package urls created by using VulnerableCode's data☆10Aug 14, 2020Updated 5 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- An installer to enable the RPM Python binding in any environment.☆14May 11, 2023Updated 3 years ago
- The Disclosure-CLI provides an easy way to access the public api of the FOSS Disclosure Portal. It is the recommended tool for external s…☆19Apr 14, 2026Updated 3 months ago
- Double Open license classification for OSS Review Toolkit (ORT) and other uses.☆16Jun 17, 2026Updated last month
- CISA Known Exploited Vulnerabilities Catalog Enrichment☆19Jun 24, 2024Updated 2 years ago
- A minimal specification for VERS aka. a "mostly universal" version range specifier , join the discussion at https://join.slack.com/t/abou…☆15Updated this week
- Decentralized Cyber Threat Intelligence Kaizen Framework☆27Jan 31, 2022Updated 4 years ago
- Service to scan licenses from source code☆12Aug 14, 2023Updated 2 years ago
- One Git library to Rule -- one API for many git forges☆58Updated this week
- Which license did they mean?☆19Jul 31, 2026Updated last week
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- OASIS TC Open Repository: CSAF Parser tool for parsing and checking the syntax of the Common Vulnerability Reporting Framework (CVRF) con…☆25Apr 21, 2026Updated 3 months ago
- Functionality and DataModels of OWASP CycloneDX for Python☆113Updated this week
- Virtual model fields that are transparently mapped to Postgres jsonb☆14Jun 2, 2016Updated 10 years ago
- Django test tools☆14Jun 10, 2024Updated 2 years ago
- 🪐 A Database of Existing Security Vulnerabilities Patches to Enable Evaluation of Techniques (single-commit; multi-language)☆45Apr 14, 2025Updated last year
- Checks for search order privilege escalation vectors in system environment, system shared objects and executable files in $PATH.☆18Aug 6, 2021Updated 5 years ago
- Python implementation of Stakeholder-Specific Vulnerability Categorization (SSVC)☆23Aug 3, 2026Updated last week