osv-scanner icon indicating copy to clipboard operation
osv-scanner copied to clipboard

Document the data and sources that OSV-Scanner uses

Open cuixq opened this issue 1 year ago • 0 comments

OSV-Scanner sends data to various services for different purposes:

  • OSV.dev for vulnerabilities
  • deps.dev for license information and dependency resolution
  • Maven registries for package and version metadata
  • etc

We should document these data and their sources in README.

cuixq avatar Dec 09 '24 04:12 cuixq