Dependency-Track
mediumOWASP software supply chain risk platform for SBOM analysis and dependency vulnerability tracking.
2 GB RAM Docker Active Apache-2.0
Replaces
Pros
- Purpose-built SBOM and dependency risk tracking
- Good fit for software teams with compliance needs
- Integrates with CI pipelines and scanners
Cons
- Requires SBOM generation to be useful
- More security-program tooling than general app scanner
- Needs ongoing vulnerability feed and policy tuning
Tags
Need a server? Hosting recommendations
Related
Similar Apps
Authelia
Open-source authentication and authorization server providing SSO and 2FA for your apps.
0.25GB Active
Authentik
Identity provider and SSO solution with a modern UI for managing users and access policies.
2GB Active
CrowdSec
Collaborative intrusion prevention system that analyzes logs and shares threat intelligence.
0.25GB Active