fossas / fossa-cliLinks
Fast, portable and reliable dependency analysis for any codebase. Supports license & vulnerability scanning for large monoliths. Language-agnostic; integrates with 20+ build systems.
☆1,461Updated this week
Alternatives and similar repositories for fossa-cli
Users that are interested in fossa-cli are comparing it to the libraries listed below
Sorting:
- SQL interface to git repositories, written in Go. https://docs.sourced.tech/gitbase☆2,083Updated 2 years ago
- Tern is a software composition analysis tool and Python library that generates a Software Bill of Materials for container images and Dock…☆1,013Updated last year
- A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby☆955Updated last week
- A suite of tools to automate software compliance checks.☆1,912Updated this week
- Python reference implementation of The Update Framework (TUF)☆1,695Updated this week
- Contributor License Agreement assistant (CLA assistant)☆1,467Updated last year
- Repolinter, The Open Source Repository Linter☆462Updated last week
- A GitHub App built with Probot that closes abandoned Issues and Pull Requests after a period of inactivity.☆1,265Updated 2 years ago
- ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party package…☆2,461Updated last week
- OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reductio…☆467Updated last week
- Pull Requests for GitHub repository settings☆1,015Updated last week
- Compute various size metrics for a Git repository, flagging those that might cause problems☆3,964Updated 2 weeks ago
- 🤖 A framework for building GitHub Apps to automate and improve your workflow☆9,434Updated last week
- GitHub's employee intellectual property agreement, open sourced and reusable☆2,198Updated 7 months ago
- Gives criticality score for an open source project☆1,418Updated last month
- Artifact Metadata API☆1,562Updated last week
- The Open Source Discovery Service☆1,140Updated 2 months ago
- The Buildkite Agent is an open-source toolkit written in Go for securely running build jobs on any device or network☆916Updated this week
- 📮 Untangle your GitHub Notifications☆4,443Updated last week
- 🤖 All the missing GitHub automation 🙂 🙌☆713Updated last year
- Reduce maintainer fatigue by automating GitHub☆821Updated this week
- Supply-chain Levels for Software Artifacts☆1,795Updated last month
- High-performance extensible build system for reproducible multi-language builds.☆2,577Updated last week
- Knox is a secret management service☆1,256Updated 2 weeks ago
- 🏆Open Source Security Foundation (OpenSSF) Best Practices Badge (formerly Core Infrastructure Initiative (CII) Best Practices Badge)☆1,314Updated this week
- A License Classifier☆343Updated 3 months ago
- A Slack bot for GitHub organization management -- and other things too☆1,306Updated last year
- GrimoireLab: platform for software development analytics and insights☆576Updated last week
- Curated list of awesome tools for managing open source programs☆493Updated 2 months ago
- GitHub App to set and enforce security policies☆1,390Updated this week