Skip to main content

OSS Review Toolkit

A suite of tools to automate software compliance checks.

Analyzer

Get the dependencies of your projects, supporting over a dozen different package managers.

Downloader

Download the source code of your dependencies from version control systems or source artifacts.

Scanner

Scan the source code using the supported license, copyright, and snippet scanners.

Advisor

Get the vulnerabilities of your dependencies from different providers.

Evaluator

Apply custom policy rules against the gathered data using Kotlin scripting.

Reporter

Generate visual reports, open source notices, SBOMs, and more.