Flexera Software LLC

04/09/2024 | Press release | Distributed by Public on 04/09/2024 12:24

OSS Inspector, a New Plugin in Revenera's Software Composition Analysis Solution, Helps Streamline Open Source Security and Compliance

View all press releases

OSS Inspector, a New Plugin in Revenera's Software Composition Analysis Solution, Helps Streamline Open Source Security and Compliance

Revenera's OSS Inspector plugin enables developers to assess open source software risks without leaving their integrated development environment

Itasca, IL - September 4, 2024Revenera, producer of leading solutions that help technology companies build better products, accelerate time-to-value, and monetize what matters, today announced the availability of a new SCA plugin, OSS Inspector.

The Revenera OSS Inspector plugin enables developers using IntelliJ IDEA, an integrated development environment (IDE), to examine, within the IDE itself, the licenses and security vulnerabilities associated with the OSS components used in the application code. Without leaving the IDE, developers can immediately assess security risks to determine whether they require further review and remediation.

OSS Inspector helps developers gain a complete understanding of the dependency tree before they introduce new components into their codebase. By providing insights into open source components prior to check-in, OSS Inspector saves significant time and effort, avoiding costly issues later in the development cycle. As part of a comprehensive approach to software composition analysis (SCA), OSS Inspector also prevents the injection of components with copyleft licenses or security vulnerabilities, ensuring that code remains secure and compliant right from the start.

"More than 80 percent of software applications incorporate open source software, offering advantages such as adaptability, cost-effectiveness, and collaborative development. However, failure to address the associated challenges of OSS use, including security vulnerabilities, license compliance issues, and code quality, can lead to serious consequences, such as data breaches and compliance violations," said Venkat Ram Donga and Product Management Director. "Revenera's OSS Inspector plugin enables developers to detect OSS components directly within the IntelliJ IDE before code is checked in, further shifting-left to mitigate compliance issues as early as possible. This early detection reduces the need for multiple review and remediation cycles, helping to avoid more costly fixes later in the development process."

The OSS Inspector plugin helps organizations maintain secure and compliant code from the start of the development process. Key features include identification of components with copyleft licenses and vulnerabilities, as well as providing critical information such as PURL (Package URL), vulnerability ID, severity level, and CVSS score.

Revenera's OSS Inspector is available free with Revenera SCA offering. For full product details about OSS Inspector, please visit:

https://www.revenera.com/software-composition-analysis/products/oss-inspector

Follow Revenera

About Revenera

Revenera helps product executives build better products, accelerate time to value and monetize what matters. Revenera's leading solutions help software and technology companies drive top line revenue with modern software monetization, understand usage and compliance with software usage analytics, empower the use of open source with software composition analysis and deliver an excellent user experience-for embedded, on-premises, cloud and SaaS products. To learn more, visit www.revenera.com.

For More Information, Contact:

Bret Clement
[email protected]

View all press releases
* All third-party trademarks are the property of their respective owners.