Security & License Compliance For Your App's Dependencies 🪱
-
Updated
Sep 1, 2024 - JavaScript
Security & License Compliance For Your App's Dependencies 🪱
Repository to hold the new UI framework for FOSSology built with React
Chrome/Firefox browser extension to compare text against spdx license list
OSS license watchdog. Monitors GitHub repos you depend on and alerts you when a license changes, explaining exactly what you can no longer do.
CLI dependency health checker for Node.js/npm: CVE scanning (OSV + NVD), license conflicts, unused deps, safe auto-fix with rollback, and optional AI-powered recommendations. Free complement to npm audit & Dependabot.
A modular, source-available license generator for digital creators.
Zero-runtime-dependency secret and npm license gates, plus a read-only repository safety review Agent Skill.
Audit creative asset provenance, licenses, attribution, and evidence before release.
GitHub Action for FOSSA license scanning with detailed PR comments and policy violation reporting. Automates license compliance checks with intelligent violation analysis and actionable feedback.
Detect open-source libraries and their licenses on web pages. Analyze compatibility risks instantly for safer development.
Turn any repo into release notes, a docs site, and a license SBOM — in one command
generate a LICENSE file in seconds. MIT, Apache-2.0, GPL, BSD, and more.
Offline-first CLI and GitHub Action for dependency health checks across npm, Python, Rust, and Go: vulnerabilities, risky scripts, typosquatting, stale packages, licenses, and baseline-aware CI reports.
GitHub Action for reviewing dependency changes and policy findings in pull requests with Bomly CLI.
Evidence-only DSH plugin for license obligation delivery closure
Playable sound-source registry for Instrument Atlas, prioritizing physical modeling engines with licensed sample fallbacks.
To associate your repository with the license-compliance topic, visit your repo's landing page and select "manage topics."