Live data from Hacker News

SafeDep Vet - Open Source software supply chain dependency risks

safedep.io

1–3 of 3 posts

Re: SafeDep Vet - Open Source software supply chain dependency risks

#3

SafeDep vet is a tool for identifying risks in open source software supply chain. It helps engineering and security teams to identify potential issues in their open source dependencies and evaluate them against organizational policies.

How that compares to https://trivy.dev, https://pkg.go.dev/golang.org/x/vuln/cmd/govulncheck and other tools?