Get the latest tech news

Open source projects could sell SBOM fragments


Scanning source files for licensing information (because the package managers‘ metadata is insufficient) is a lot of work, and a lot of wasted effort, becaus...

Scanning source files for licensing information (because the package managers‘ metadata is insufficient) is a lot of work, and a lot of wasted effort, because only rarely do companies pool their resources. One example is OSSelot, another is ClearlyDefined. "Instead of scanning for copyright notices and license texts yourself, just sponsor us on GitHub and get access to always up-to-date SBOM information by the people who really know what‘s inside".

Get the Android app

Or read this on Hacker News

Read more on:

Photo of open source projects

open source projects

Photo of Fragments

Fragments

Photo of SBoM

SBoM

Related news:

News photo

North Koreans clone open source projects to plant backdoors, steal credentials

News photo

North Koreans clone open source projects to plant backdoors, steal credentials

News photo

Show HN: An innovative flag-guessing game that identify regions by fragments