The service is a security analysis tool to provide information to applications owners about the last CVE records found them. Additionally, a SAST analysis scan is developed in order to identify hard coded secrets on the repositories. Finally, a common practioces analysis is provided in case of a Docker Compose file is provided for the deployment of the component.
Addressing target audiences and expressing needs
- Collaboration
- Fellowship to advance my/our research
Collaborate in the open source community to improve the usability of the tool.
- Public or private funding institutions
- Research and Technology Organisations
- Academia/ Universities
R&D, Technology and Innovation aspects
Currently, there is a functional version running based on python and we are working in a complete migration of the solution in a Go version of the component.
The application can be installed and configured in order to execute the analysis on other components that could be accesible via web repositories as GitHub, Gitlab, or so on.
We are non-profit organization, the business model sustainability is maintained with the development of the open source community around FIWARE as well as the different research project to be developed in the long-term.

