Sonatype Hexagon
Sonatype Open Source Community Handbook
Our Community Projects
Get Involved
About
Flagship Projects
These are our Flagship Open Source projects.
AuditJS
javascript
nodejs
Scan JavaScript (node.js inclusive) projects for vulnerable third-party dependencies.
Works with:
Bach
php
composer
Scan PHP and Composer projects for vulnerable third-party dependencies.
Works with:
Cargo Pants
rust
cargo
Cargo subcommand provides a project bill of materials and identifies vulnerabilities.
Works with:
Chelsea
rubygems
Scan RubyGems powered projects for vulnerable third-party dependencies.
Works with:
Cheque
c
Scan C projects for vulnerable third-party dependencies.
Works with:
Jake
python
conda
pip
Scan Python and Conda environments for vulnerable third-party dependencies.
Works with:
Nancy
golang
Scan Golang projects for vulnerable third-party dependencies.
Works with:
OysterR
r
cran
Scan R code for vulnerable third-party dependencies.
Works with:
Sherlock Trunks
java
gradle
A Gradle plugin that scans the dependencies of a Gradle project for vulnerabilities.
Works with:
Last modified August 29, 2024:
fixes to project listing pages and boiler plate content on home page (7eaa95a)