Archive

Read about and watch videos on AboutCode projects, open source, SBOMs, vulnerabilities, licensing, SCA, compliance, and more.
Python-inspector

python-inspector: Easily resolve Python dependencies

Manage DejaCode Usage policies

Manage your organization’s Usage Policies in DejaCode

FOSS for FOSS featured graphics

Open Source Software Supply Chain: FOSS for FOSS

Practical license detection featured graphics

Practical License Detection for Organizations

FOSS Daily

FOSS Daily for licensing “hygiene” and vulnerability compliance

universal software package identifier

PURLs of Wisdom: Universal software package identification

Dependency Resolution

Non-Vulnerable Dependency Resolution

Software Supply Chain, NLnet Foundation

Tooling in software supply chain management

PURL webinar

Standardizing FOSS package identifiers using PURL

Ensure Compliance with DejaCode

Track your software, and ensure compliance with DejaCode

ScanCode LicenseDB

ScanCode LicenseDB: 2,000+ licenses curated in a public database

SBOM

Software Composition Analysis for Software Supply Chain Security

Dual License

What is a Dual License Anyway?

OpenChain Webinar FOSDEM Recap

FOSDEM Recap: FOSDEM 2023 partial event report

Intro to VulnerableCode

Technical deep dive into VulnerableCode v31 and VulnTotal

VulnTotal

VulnTotal: Validate vulnerability coverage of VulnerableCode

Software Composition Analysis

SCA the FOSS Way – Part 1: Software Composition Analysis

Copyright

Do you really need to update the copyright statement each new year?

VulnerableCode Cover

VulnerableCode v31 expands vulnerability coverage

Version

There and back again: A software versioning story

License clarity scoring

Providing Clarity on License Clarity Scoring in ScanCode

VulnerableCode

VulnerableCode: Find FOSS vulnerabilities, improve FOSS security

VulnerableCode Cover

VulnerableCode v30 publicly available with new UI and API access

VulnerableCode

Finding FOSS software vulnerabilities with FOSS tools

ScanCode.io

Scanning Docker images with ScanCode.io

Vulnerability Database

A vulnerability database should not be about vulnerabilities!

PURL and Vers

Identifying packages and vulnerabilities across ecosystems

Google Summer of Code 2022

Google Summer of Code: Open source SCA tools with AboutCode

SBOM

Software Bill of Materials and Software Composition Analysis

Scanning with ScanCode

Updates on open source scanning with ScanCode

License Compliance

nexB on GPL 3.0 and Related License Compliance Issues

JAVA

Using Copyleft-licensed software components in a Java application

SFCON 2020

FOSS and Third Party Software Compliance for Small Businesses

FOSS security

Building the FOSS security commons to identify vulnerabilities

OSS licensing clarity

Exploring the state of open source licensing clarity

FetchCode

Introducing FetchCode: A smart code downloader

Ready to automate open compliance?

Request a demo of the AboutCode stack.