Skip to content
@nexB

nexB

Pinned repositories

  1. 🔎 ScanCode detects licenses, copyrights, package manifests & dependencies and more by scanning code ... to discover and inventory open source and third-party packages used in your code.

    Python 1.1k 331

  2. ScanCode.io is a server to script and automate software composition analysis pipelines with ScanPipe pipelines. First application is for Docker container and VM composition analysis.

    Python 18 9

  3. 📊 ScanCode Workbench is a desktop app to review and conclude license and origin from code scans generated by ScanCode Toolkit.

    HTML 96 49

  4. AboutCode Toolkit provides a simple way to document provenance metadata (origin and license) about third-party code that you use in your project: it includes utilities to generate inventory/BOM o…

    Python 62 24

  5. A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sponsored by NLnet https://nlnet.nl/project/vulnerabilitydatab…

    Python 78 39

  6. container-inspector is a suite of analysis utilities and command line tools for Docker images, their layers and how these relate to each other as well as Dockerfiles.

    Python 15 5

Repositories