FOSSA Review

Customer Reference Rating4.8
Devices Supported
  • Web-based
Customer Types
  • < 50 Small Businesses
  • < 250 Medium Businesses
  • 250+ Large Businesses
  • 15Testimonials
  • 13Case Studies
  • 2Customer Videos

Overview

FOSSA facilitates modern open source management. It offers real-time vulnerability and license management for open source dependencies. Plus, it enables scalable security and compliance for developers. You can integrate real-time license audits, reporting, and vulnerability scans at the pace of development and delivery.

FOSSA’s compliance features include compliance audits, license scanning, and attribution notices on autopilot. Security capabilities include automated remediation and real-time alerts for third-party vulnerabilities. The software automates everything from managing attributions at release to blocking poor incoming commits.

FOSSA allows you to deeply integrate with your tools and code whether they’re behind your firewall or in the cloud. Compliance status, attribution, and disclosures are always available with a single click. You can ship anytime with a clean health bill. Effortlessly track alterations across releases. Finally, you can freely utilize libraries, allowing your tools to identify issues before integration.

Benefits

Kickstart Compliance

Packed with functionalities to get you started swiftly.

Compliance at Every Commit 

Add intelligent compliance, dependency analysis, and license scanning into your real-time development process.

Deep Module and License Analysis

FOSSA operates atop your code to continually assess not just the libraries added by your creators, but also indirect ones from a limitless depth.

Notifications and Workflow Integrations

Integrate compliance deeply into your team, and become proactive and swiftly reactive.

Effortless Reports and Releases 

With constant compliance, you can release anytime with a clean health bill.

You can generate attributions, audit results, reports, and BOMs with a single click.

FOSSA automatically produces reports and disclosures for you at each commit, gathered from raw license information across your profound dependencies.

Let the platform update and host these on your behalf, or you can export and share them yourself with your users, investors, customers etc.

A Central Compliance Hub 

No more unnecessary work, FOSSA remembers all the tasks you do and makes each successive release easier.

Product Features

  • Standard license checks
  • Unrestricted code scanning
  • Basic reports and notices
  • Deep component reports
  • Full cloud integrations
  • Custom integrations
  • Basic support
  • On-boarding & SLAs

Pricing

Personal Plan

  • Free up to 5 repos, public or private

Enterprise Plan

  • $46/mo per developer
  • On-prem available
  • Unlimited repos
  • Engineering team size: 5 developers = $230/mo

Customer Support

  • Support Tickets