Scan code for origin, license and vulnerabilities

Technologies
python, javascript, Django+PostgreSQL, C/Rust/Go
Topics
dependencies, vulnerabilities, SoftwareCompositionAnalysis, License, SBOM
Scan code for origin, license and vulnerabilities
AboutCode.org is a community of open source developers who are trying to make open source easier to use by providing open source tools to discover, identify and track open source components (aka. Software Composition Analysis – SCA). This includes tools, data and standards for code origin, FOSS licenses and security vulnerabilities.
2023 Program

Successful Projects

Contributor
Jay Kumar
Mentor
Philippe Ombredanne, ayansinhamahapatra, Jonathan Yang
Organization
AboutCode
Creating Pure-Python Fallback Dependencies
Currently sctk uses pyahocorasick intbitset for license detection & lxml for creating cyclonedx-xml output formats. All three of them are currently...
Contributor
ziad hany
Mentor
Philippe Ombredanne, Keshav Priyadarshi, TG1999
Organization
AboutCode
Decentralized vulnerability data peer-review
Software packages vulnerabilities : let's say we have a security team that wants to track new vulnerabilities in the open source software packages ,...