Skip to content
@aboutcode-org

AboutCode

Bring together best-in-class open source Software Composition Analysis (SCA) tools and data for open compliance and software supply chain security.

Pinned Loading

  1. scancode-toolkit scancode-toolkit Public

    🔍 ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet, the Google Summer …

    Python 2.5k 716

  2. dejacode dejacode Public

    Automate open source license compliance and ensure software supply chain integrity

    Python 43 21

  3. scancode.io scancode.io Public

    ScanCode.io is a server to script and automate software composition analysis with pipelines. This project is sponsored by the European Commission, NLnet NGI0, the Google Summer of Code, nexB and ot…

    Python 191 191

  4. vulnerablecode vulnerablecode Public

    A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sponsored by NLnet https://nlnet.nl/project/vulnerabilitydatab…

    Python 655 295

  5. purldb purldb Public

    Tools to create and deploy a database of software packages metadata, origin, dependencies, and license keyed by PURLs (Package URLs). Supported by AboutCode, sponsored by NLnet https://nlnet.nl/pro…

    HTML 63 68

  6. scancode-action scancode-action Public

    Run ScanCode.io pipelines from your Workflows

    12 7

Repositories

Showing 10 of 143 repositories
  • vulnerablecode Public

    A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sponsored by NLnet https://nlnet.nl/project/vulnerabilitydatabase/ for https://www.aboutcode.org/ Chat at https://gitter.im/aboutcode-org/vulnerablecode Docs at https://vulnerablecode.readthedocs.org/

    aboutcode-org/vulnerablecode’s past year of commit activity
    Python 655 Apache-2.0 295 668 (15 issues need help) 99 Updated Mar 27, 2026
  • scancode-action Public

    Run ScanCode.io pipelines from your Workflows

    aboutcode-org/scancode-action’s past year of commit activity
    12 Apache-2.0 7 5 4 Updated Mar 27, 2026
  • scancode.io Public

    ScanCode.io is a server to script and automate software composition analysis with pipelines. This project is sponsored by the European Commission, NLnet NGI0, the Google Summer of Code, nexB and others generous sponsors!

    aboutcode-org/scancode.io’s past year of commit activity
    Python 191 Apache-2.0 191 419 (2 issues need help) 63 Updated Mar 27, 2026
  • dejacode Public

    Automate open source license compliance and ensure software supply chain integrity

    aboutcode-org/dejacode’s past year of commit activity
    Python 43 AGPL-3.0 21 87 (4 issues need help) 2 Updated Mar 27, 2026
  • www.aboutcode.org Public

    Docusaurus/markdown-based repository for the aboutcode.org website.

    aboutcode-org/www.aboutcode.org’s past year of commit activity
    JavaScript 5 14 55 3 Updated Mar 27, 2026
  • aboutcode-toolkit Public

    ✅ AboutCode Toolkit provides a simple way to document provenance metadata (origin and license) about third-party code that you use in your project: it includes utilities to generate inventory/BOM or Attribution documentation.

    aboutcode-org/aboutcode-toolkit’s past year of commit activity
    Python 99 49 6 3 Updated Mar 26, 2026
  • aboutcode-mirror-nuget-catalog Public

    Append-only mirror of NuGet Catalog, updated hourly

    aboutcode-org/aboutcode-mirror-nuget-catalog’s past year of commit activity
    Python 2 3 0 0 Updated Mar 26, 2026
  • aboutcode-mirror-alpine-secdb Public

    Alpine Linux Security Database Mirror https://secdb.alpinelinux.org/

    aboutcode-org/aboutcode-mirror-alpine-secdb’s past year of commit activity
    0 0 0 0 Updated Mar 26, 2026
  • purlvalidator-go Public

    Offline Package URL validator using a prebuilt FST of known packages.

    aboutcode-org/purlvalidator-go’s past year of commit activity
    Go 0 Apache-2.0 0 1 0 Updated Mar 26, 2026
  • purl-validator.rs Public

    Offline Package URL validator using a prebuilt FST of known packages.

    aboutcode-org/purl-validator.rs’s past year of commit activity
    Rust 0 Apache-2.0 2 1 2 Updated Mar 26, 2026

Most used topics

Loading…