Join us

ContentUpdates and recent posts about OWASP Dependency-Check..
Discovery IconThat's all about @OWASP Dependency-Check — explore more posts below...
 Activity
@environmentalbit3940 started using tool werf , 11 hours, 31 minutes ago.
 Activity
@environmentalbit3940 started using tool VictoriaMetrics , 11 hours, 31 minutes ago.
 Activity
@environmentalbit3940 started using tool SaltStack , 11 hours, 31 minutes ago.
 Activity
@environmentalbit3940 started using tool Python , 11 hours, 31 minutes ago.
 Activity
@environmentalbit3940 started using tool Pulumi , 11 hours, 31 minutes ago.
 Activity
@environmentalbit3940 started using tool Kubernetes , 11 hours, 31 minutes ago.
 Activity
@environmentalbit3940 started using tool Grafana , 11 hours, 31 minutes ago.
 Activity
@environmentalbit3940 started using tool Go , 11 hours, 31 minutes ago.
 Activity
@environmentalbit3940 started using tool GNU/Linux , 11 hours, 31 minutes ago.
 Activity
@environmentalbit3940 started using tool GitLab CI/CD , 11 hours, 31 minutes ago.
OWASP Dependency-Check is an open source Software Composition Analysis (SCA) tool that scans application dependencies to detect publicly disclosed vulnerabilities. It analyzes project manifests, package metadata, and binary artifacts, then matches them against multiple vulnerability databases, including the NVD. Dependency-Check supports Java, JavaScript, .NET, Python, Ruby, and many other ecosystems. Teams integrate it into CI pipelines, IDEs, and build systems to catch vulnerable libraries early and maintain secure software supply chains. As part of the OWASP foundation, it is widely trusted for transparent, vendor-neutral security scanning.