Upload a dependency manifest or paste a GitHub repo URL. We generate a CycloneDX SBOM, look up known issues via the OSV public API, and summarize risk with fix-oriented suggestions—without the complexity of enterprise scanners.
Supported: package.json, requirements.txt, pom.xml
We try package.json, then requirements.txt, then pom.xml on the default branch.