Description from extension meta
Skannaa avoimen lähdekoodin julkaisuja haittaohjelmien ja haavoittuvuuksien varalta Sonatype platform -selainlaajennuksella
Image from store
Description from store
Tämä selainlaajennus Chromium-pohjaisille selaimille toimii Sonatype Platform-alustan kanssa, antaen ohjelmistokehittäjille suosituksia paremmista kirjastoista ja versioista ohjelmistokehityskaaren alussa.
Yhdistä laajennus Sonatype Lifecycle-serverisi kanssa ja näe tietoa avoimen lähdekoodin riskeistä kaikissa suosituissa avoimen lähdekoodin jakelupisteissä, kuten Maven Central (java), NPM (javascript), PyPI (Python) ja monessa muussa.
Tämä laajennus korvaa aiemman Chrome-laajennoksemme (Nexus IQ Chrome Extension), joka ajetaan alas vuoden 2023 loppuun mennessä.
Latest reviews
- (2024-05-09) Chris Wolters: I use this all the time. As developers are initially considering which component to use in their application, they get information while looking at the component in the OSS repository without doing anything. Awesome for shifting left selecting the best component rather than remediating downstream!
- (2023-08-16) Neil Schloth: A great tool for analyzing OSS components on the web for high-risk security vulnerabilities prior to downloading for use. Prevent mistakes early on in the SDLC by alerting on insecure packages before they are built in to application code.
- (2023-08-16) Neil Schloth: A great tool for analyzing OSS components on the web for high-risk security vulnerabilities prior to downloading for use. Prevent mistakes early on in the SDLC by alerting on insecure packages before they are built in to application code.
- (2023-08-10) Roy Decker: An awesome solution for researching open source components that are being considered for an application.
- (2023-07-14) Ben Hartley: The ultimate in shifting left!
- (2023-07-14) Ben Hartley: The ultimate in shifting left!
- (2023-07-14) Patrick Kiessling: Nice!
- (2023-07-14) Patrick Kiessling: Nice!
- (2023-07-14) Paul Meharg: I find this very useful to get a preview of the security and legal implications of acomponent before I start to write code! Keeps me from creating technical debt from the git-go.
- (2023-07-14) Paul Meharg: I find this very useful to get a preview of the security and legal implications of acomponent before I start to write code! Keeps me from creating technical debt from the git-go.
- (2023-07-14) Adam Such: Very useful plugin!
- (2023-07-14) Adam Such: Very useful plugin!
- (2023-07-14) Alexander Plattel: Excellent tool for looking at Open Source packages before you download them.
- (2023-07-14) Alexander Plattel: Excellent tool for looking at Open Source packages before you download them.
- (2023-07-11) Joseph Bernie: An extremely useful plugin for Sonatype customers!!