Skip to content

Add releaserun dependency vulnerability scanner#1758

Open
Matheus-RR wants to merge 1 commit intoanalysis-tools-dev:masterfrom
Matheus-RR:add-releaserun
Open

Add releaserun dependency vulnerability scanner#1758
Matheus-RR wants to merge 1 commit intoanalysis-tools-dev:masterfrom
Matheus-RR:add-releaserun

Conversation

@Matheus-RR
Copy link

Adds releaserun to the Security/SAST section.

What it does: CLI tool that scans project dependencies for known CVEs, end-of-life status, and deprecated packages. Covers Node.js, Python, Go, Rust, and Dockerfiles.

Why it fits: Similar to Grype and lockfile-lint already on the list, but focused on dependency lifecycle (EOL detection, upgrade paths) alongside vulnerability scanning. Multi-ecosystem support from a single tool.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant