Dependency Scanning

Browse 102 dependency scanning tools

Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.

Runtime SCA tool prioritizing fixable & exploitable open-source vulnerabilities

OpenSCA Project is a dependency security scanner that runs in the browser.

MCP server that adds real-time package vuln checks to AI coding assistants.

CLI tool for scanning Python dependencies for known vulnerabilities.

Vulnerability management & compliance platform for open source supply chains.

Proprietary Python vulnerability DB with AI detection & expert verification.

Supply chain firewall blocking malicious/vulnerable packages before installation.

Autonomous open source supply chain security & license compliance platform.

SBOM creation, management & vulnerability scanning across the dep. tree.

SCA tool for detecting OSS vulnerabilities and license risks in dependency trees.

Container vulnerability & license scanner with deep dependency tree analysis.

Free SCA tool for open source projects with vuln scanning & SBOM.

Detects and blocks malicious/vulnerable open source packages in supply chains.

Database for researching & tracking open source components with safety scores.

Web scanner that detects vulnerable/outdated components and license risks.

SCA tool scanning web projects for vulnerable, outdated, or non-compliant components.

IDE plugin that scans dependencies for vulnerabilities during development.

SCA scanner for open source vulnerabilities, license compliance & SBOM.

Traces third-party library usage at function level to identify dependency risk.

Searchable open source vulnerability DB aggregating CVEs from NVD & GitHub.

Tool for searching, comparing, and evaluating open source dependencies.

Enterprise SBOM management platform for software supply chain security.

Automated NTIA-compliant SBOM generation for software supply chain risk mgmt.