Description from extension meta
Refuerce la seguridad con la extensión de Sonatype: analice repositorios de código abierto en busca de vulnerabilidades conocidas.
Image from store
Description from store
Esta extensión para navegadores Chromium funciona con la plataforma Sonatype para permitir a los desarrolladores tomar mejores decisiones en las primeras etapas de ciclo de vida del desarrollo de software.
Conecte esta extensión al Sonatype Lifecycle Server de su organización y obtenga información instantánea sobre riesgos mientras navega por registros públicos de código abierto como Maven Central (para Java), NPM (para Javascript), PyPi (para Python) y muchos más.
Esta extensión reemplaza nuestra extensión anterior (Nexus IQ Chrome Extension) que se retirará a finales de 2023.
Latest reviews
- (2024-05-09) Chris Wolters: I use this all the time. As developers are initially considering which component to use in their application, they get information while looking at the component in the OSS repository without doing anything. Awesome for shifting left selecting the best component rather than remediating downstream!
- (2023-08-16) Neil Schloth: A great tool for analyzing OSS components on the web for high-risk security vulnerabilities prior to downloading for use. Prevent mistakes early on in the SDLC by alerting on insecure packages before they are built in to application code.
- (2023-08-16) Neil Schloth: A great tool for analyzing OSS components on the web for high-risk security vulnerabilities prior to downloading for use. Prevent mistakes early on in the SDLC by alerting on insecure packages before they are built in to application code.
- (2023-08-10) Roy Decker: An awesome solution for researching open source components that are being considered for an application.
- (2023-07-14) Ben Hartley: The ultimate in shifting left!
- (2023-07-14) Ben Hartley: The ultimate in shifting left!
- (2023-07-14) Patrick Kiessling: Nice!
- (2023-07-14) Patrick Kiessling: Nice!
- (2023-07-14) Paul Meharg: I find this very useful to get a preview of the security and legal implications of acomponent before I start to write code! Keeps me from creating technical debt from the git-go.
- (2023-07-14) Paul Meharg: I find this very useful to get a preview of the security and legal implications of acomponent before I start to write code! Keeps me from creating technical debt from the git-go.
- (2023-07-14) Adam Such: Very useful plugin!
- (2023-07-14) Adam Such: Very useful plugin!
- (2023-07-14) Alexander Plattel: Excellent tool for looking at Open Source packages before you download them.
- (2023-07-14) Alexander Plattel: Excellent tool for looking at Open Source packages before you download them.
- (2023-07-11) Joseph Bernie: An extremely useful plugin for Sonatype customers!!