oss-compliance topic
scancode-toolkit
:mag: ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet project https://nl...
tern
Tern is a software composition analysis tool and Python library that generates a Software Bill of Materials for container images and Dockerfiles. The SBOM that Tern generates will give you a layer-by-...
ort
A suite of tools to automate software compliance checks.
scancode-workbench
:bar_chart: ScanCode Workbench is a desktop app to review and conclude license and origin from code scans generated by ScanCode Toolkit.
Sharing-creates-value
This repo realizes the idea that OSS compliance activities will be less expensive by applying OSS principles
barista
project barista - open source license and vulnerability management
awesome-software-supply-chain-security
A compilation of resources in the software supply chain security domain, with emphasis on open source
OpossumUI
A light-weight app to audit and inventory large codebases for open source license compliance.
deltacode
DeltaCode: compare two codebase scans (from ScanCode) to detect significant changes.