AboutCode
Scan code for origin, license and vulnerabilities
Scan code for origin, license and vulnerabilities
AboutCode.org is a community of open source developers who are trying to make open source easier to use by providing open source tools to discover, identify and track open source components (aka. Software Composition Analysis – SCA). This includes tools, data and standards for code origin, FOSS licenses and security vulnerabilities.
2024 Program
Successful Projects
Contributor
Michael Ehab Mikhail
Mentor
ziad hany, Keshav Priyadarshi, Omkar Phansopkar
Organization
AboutCode
VulnerableCode/Vulntotal: Browser Extension
Implement a Firefox/Chrome browser extension that enables users to use VulnTotal from their browser. The idea is to use Pyodide to run the existing...
Contributor
Ambuj Kulshreshtha
Mentor
ziad hany, Keshav Priyadarshi, TG1999
Organization
AboutCode
Add more data sources and mine the graph to find correlations between vulnerabilities
There is a large number of pending tickets for data sources. This project focuses on adding more and more vulnerability data sources and consume...
Contributor
Pranay Das
Mentor
Philippe Ombredanne, ayansinha, TG1999, Thomas Druez
Organization
AboutCode
Enrich SBOM data based on OSSF Security Score Card
I am developing a pypi package which will be responsible for calling OpenSSF scorecard API or CLI with an open-source github link and fetching the...
Contributor
swastkk
Mentor
Philippe Ombredanne, ayansinha, AvishrantSh, Jonathan Yang
Organization
AboutCode
Compute summary for all detected packages.
The project aims to improve scanning accuracy by computing summary and license clarity scores for each package and its files, rather than for the...