GitHub Sponsors Matching Fund
To boost community funding, GitHub will match your contribution! Learn more.
jeremylong
In 2012 I released the first version of dependency-check; one of the first Software Composition Analysis (SCA) tools available. SCA is a critical part of releasing code - teams need to ensure they are using libraries that are free of known security defects. Dependency-check can help teams identify known vulnerable libraries being used in their project.
By sponsoring me, you will help me spend more time maintaining dependency-check and other open source projects. Note that this is not a contribution to OWASP - but rather sponsorship of my development work on dependency-check and other open source projects.
Thanks
Featured work
-
jeremylong/DependencyCheck
OWASP dependency-check is a software composition analysis utility that detects publicly disclosed vulnerabilities in application dependencies.
Java 2,634 -
jeremylong/dependency-check-gradle
The dependency-check gradle plugin allows projects to monitor dependent libraries for known, published vulnerabilities.
Groovy 199 -
jeremylong/lein-dependency-check
A leiningen plugin for detecting vulnerable project dependencies
Clojure -
jeremylong/sbt-dependency-check
SBT Plugin for OWASP DependencyCheck. Monitor your dependencies and report if there are any publicly known vulnerabilities (e.g. CVEs).
Scala -
jeremylong/dependency-check-sonar-plugin
Integrates OWASP Dependency-Check reports into SonarQube
HTML 5 -
jeremylong/dependencycheck-central-mysql-docker
Self-updating OWASP DependencyCheck Database Server
📖 Dockerfile
Select a tier
$5 a month
Select$20 a month
SelectBuy me a few coffees each month (I might have a problem). Truly appreciate the contribution.
$500 a month
SelectCorporate coffee sponsorship (no, really I might have a problem) - your company logo will be added to the "Supporter" section of my popular repos.
$1,000 a month
SelectCorporate sponsorship - your company logo will be added to the "Supporter" section of my popular repos.

Formed in 2009, the Archive Team (not to be confused with the archive.org Archive-It Team) is a rogue archivist collective dedicated to saving copies of rapidly dying or deleted websites for the sake of history and digital heritage. The group is 100% composed of volunteers and interested parties, and has expanded into a large amount of related projects for saving online and digital history.

Buy me a coffee each month to help fuel development work on my projects. Plus you’ll receive a Sponsor badge on your profile!