dejacode
dejacode copied to clipboard
Automate open source license compliance and ensure software supply chain integrity
Extend the basic CRAVEX Vulnerability exploitability: Reachability integration to pull and store the extended reachability result determination for a given product's packages
API Code to expose reachability results for integration in DejaCode CRAVEX/ vulnerability management
- Added new quickstart guide to run through key concepts - Updated tutorial 1 to be more concise and easier to follow
The SPDX team has specified that a non-SPDX-license-list text which is an exception should be identified with a name that starts with `AdditionRef` rather than `LicenseRef`. So, from the SPDX...
> @pombredanne just FYI might be relevant Stephen Shaffer "Modeling Asset Risk Using Grouped EPSS" https://www.youtube.com/watch?v=W2UMqkRyBOY. > He and I will be adding a chapter on this to the RBP...
**Is your enhancement request related to a problem? Please describe.** VCIO is in the process of deprecating the VCID and advancing the Advisory ID. There are multiple links to VCID...