dejacode
dejacode copied to clipboard
Automate open source license compliance and ensure software supply chain integrity
Create a web UI to rank and prioritize package vulnerabilities in a global package catalog based on available vulnerability scores
**Is your enhancement request related to a problem? Please describe.** It can happen that a software is both released as a standalone product A and simultaeously as part of a...
When a package is in DejaCode and has been furthered scanned, or is in the purldb I would like to drill down aka. navigate to its scan details either in...
Problem: provide more clarity for "Declared License" vs "Concluded License" . Benefit: support the completeness of an SBOM. Create an additional declared_license field on Package. When a package scan is...
**Is your enhancement request related to a problem? Please describe.** When navigating through the hierarchy, it is not apparent which package/dep has further deps. For example in the following screenshot...
We should store Dependencies as Packages in DejaCode. Also, in addition to simply creating Product Packages, we really need to provide the necessary qualifiers for Dependencies, especially whether they are...
Importing an SBOM into a DejaCode Product can be disappointing if the SBOM does not have much license information. A nice feature would be to provide a new command option...
We need a way for a DejaCode Superuser, who is also an Atlassian JIRA administrator, to use the DejaCode UI to configure integration between DejaCode Requests and JIRA Issues (requests,...
A Reference section in the DejaCode User Guide is needed to explain the differences between Components and Packages.
See related issue #42 DejaCode currently provides a simple and convenient interface that enables a user to generate an ABOUT file (and associated files) for a Package or Component; however,...