Matchboxmatchbox
← Back to match

OWASP dep-scan

Security and risk audit tool for project dependencies, with reachability analysis and SBOMs.

Desktopfreeglobal

A security and risk audit tool, OWASP dep-scan scans local repositories and container images to surface known vulnerabilities and license limitations within project dependencies. It adds reachability analysis across multiple languages and generates SBOMs with vulnerability disclosure details, running locally as standalone binaries or in Docker and intended for AppSec engineers, DevSecOps teams, and CI/CD pipeline owners.

Categories
dependency scanningSBOMvulnerability management

Full match profile

Behind the summary, Matchbox keeps a richer profile of OWASP dep-scan - the signals our matcher actually reads to decide when to surface it. It stays private; claim the listing to see and control it.

  • Problem & pain-point mapping
  • Who we surface it to (audience fit)
  • What it's a strong alternative to
  • Trust & credibility signals

Try Matchbox with your own problem

Describe what is not working - we’ll show you whether OWASP dep-scan (or something else) actually fits.