Skip to content
@DependencyTrack

Dependency-Track

Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain

Welcome to the Dependency-Track Community

https://dependencytrack.org/

OWASP Dependency-Track is a continuous SBOM analysis platform that allows organizations to identify and reduce risk in the software supply chain. Dependency-Track is open-source and distributed under the Apache 2.0 license.

Pinned Loading

  1. dependency-track Public

    Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

    Java 3.1k 645

  2. frontend Public

    Frontend UI for Dependency-Track

    Vue 127 180

  3. community Public

    Community resources for OWASP Dependency-Track

    8

  4. helm-charts Public

    Helm Charts for Dependency-Track

    Smarty 42 34

  5. client-go Public

    Forked from nscuro/dtrack-client

    Go client library for OWASP Dependency-Track

    Go 27 24

Repositories

Showing 10 of 22 repositories
  • hyades-apiserver Public

    Fork of the Dependency-Track API server. It includes various changes necessary to work with Hyades.

    Java 15 Apache-2.0 25 0 20 Updated Jul 9, 2025
  • dependency-track Public

    Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

    Java 3,134 Apache-2.0 645 872 (38 issues need help) 51 Updated Jul 8, 2025
  • helm-charts Public

    Helm Charts for Dependency-Track

    Smarty 42 Apache-2.0 34 9 (1 issue needs help) 2 Updated Jul 8, 2025
  • hyades Public

    Incubating project for decoupling responsibilities from Dependency-Track's monolithic API server into separate, scalable services.

    Java 79 Apache-2.0 34 79 (12 issues need help) 14 Updated Jul 7, 2025
  • frontend Public

    Frontend UI for Dependency-Track

    Vue 127 Apache-2.0 180 166 (5 issues need help) 66 Updated Jul 7, 2025
  • hyades-frontend Public

    Fork of the Dependency-Track frontend. It includes various changes necessary to work with Hyades.

    Vue 6 Apache-2.0 18 0 31 Updated Jul 4, 2025
  • vuln-db Public

    Proof of concept for OWASP Dependency-Track's own, centralized vulnerability database.

    Java 8 Apache-2.0 0 5 2 Updated Jun 30, 2025
  • client-go Public Forked from nscuro/dtrack-client

    Go client library for OWASP Dependency-Track

    Go 27 28 2 4 Updated Jun 2, 2025
  • hyades-e2e Public

    End-to-end tests for OWASP Dependency-Track

    0 Apache-2.0 1 0 0 Updated May 16, 2025
  • community Public

    Community resources for OWASP Dependency-Track

    8 Apache-2.0 0 0 0 Updated May 8, 2025