Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Scalable, end to end management for third party code, license compliance and Open Source has been a critical supplier for modern software businesses. It has changed the way people think about code. FOSSA provides the infrastructure to enable modern teams to succeed with open source. FOSSA's flagship product allows teams to track open source code used in their code. It also automates license scanning and compliance. FOSSA's tools have been used to ship software by over 7,000 open-source projects (Kubernetes Webpack, Terraform and ESLint) as well as companies like Uber, Ford, Zendesk and Motorola. FOSSA code is used by many in the software industry today. FOSSA is a venture-funded startup that has been backed by Cosanoa Ventures and Bain Capital Ventures. Marc Benioff (Salesforce), Steve Chen(YouTube), Amr Asadallah (Cloudera), Jaan Talin (Skype), Justin Mateen (Tinder) are some of the affiliate angels.

Description

Sonatype’s Vulnerability Scanner provides deep visibility into the security and compliance of open-source components used in your applications. By generating a Software Bill of Materials (SBOM) and performing detailed risk analysis, it highlights potential vulnerabilities, license violations, and security threats associated with your software. The scanner offers automated scans, helping developers identify risks early and make informed decisions to mitigate security issues. With comprehensive reporting and actionable recommendations, it empowers teams to manage open-source dependencies securely and efficiently.

API Access

Has API No 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

Azure Repos Yes 
C++ Yes 
CircleCI Yes 
Clojure Yes 
Elixir Yes 
Flexys Yes 
Fortran Yes 
GitHub Yes 
Go Yes 
Java Yes 
JavaScript Yes 
Jira Yes 
PHP Yes 
Python Yes 
Rust Yes 
Scala Yes 
Slack Yes 
Swift Yes 
Visual Basic Yes 
Zoho Directory Yes 

Integrations

Azure Repos No 
C++ No 
CircleCI No 
Clojure No 
Elixir No 
Flexys No 
Fortran No 
GitHub No 
Go No 
Java No 
JavaScript No 
Jira No 
PHP No 
Python No 
Rust No 
Scala No 
Slack No 
Swift No 
Visual Basic No 
Zoho Directory No 

Pricing Details

$230 per month
Free Trial Yes 
Free Version Yes 

Pricing Details

No price information available.
Free Trial No 
Free Version Yes 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) No 
Online Support Yes 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support No 

Types of Training

Training Docs Yes 
Webinars Yes 
Live Training (Online) No 
In Person No 

Types of Training

Training Docs No 
Webinars No 
Live Training (Online) No 
In Person No 

Vendor Details

Company Name

FOSSA

Founded

2015

Country

United States

Website

fossa.com

Vendor Details

Company Name

Sonatype

Founded

2008

Country

United States

Website

www.sonatype.com/products/vulnerability-scanner

Product Features

Compliance

Archiving & Retention No 
Artificial Intelligence (AI) No 
Audit Management No 
Compliance Tracking No 
Controls Testing No 
Environmental Compliance No 
FDA Compliance No 
HIPAA Compliance No 
ISO Compliance No 
Incident Management No 
OSHA Compliance No 
Risk Management No 
Sarbanes-Oxley Compliance No 
Surveys & Feedback No 
Version Control No 
Workflow / Process Automation No 

Continuous Integration

Build Log No 
Change Management No 
Configuration Management No 
Continuous Delivery No 
Continuous Deployment No 
Debugging No 
Permission Management No 
Quality Assurance Management No 
Testing Management No 

Source Code Management

Access Controls/Permissions No 
Bug Tracking No 
Build Automation Yes 
Change Management No 
Code Review Yes 
Collaboration No 
Continuous Integration Yes 
Repository Management No 
Version Control No 

Product Features

Vulnerability Scanners

Asset Discovery No 
Black Box Scanning No 
Compliance Monitoring No 
Continuous Monitoring No 
Defect Tracking No 
Interactive Scanning No 
Logging and Reporting No 
Network Mapping No 
Perimeter Scanning No 
Risk Analysis No 
Threat Intelligence No 
Web Inspection No 

Alternatives

Alternatives

Revenera SCA Reviews

Revenera SCA

Revenera
Revenera SCA Reviews

Revenera SCA

Revenera