Sonatype Platform Browser Extension - Scan Open Source Repositories
Extension stats
Ranking
Other platforms
Extension summary
This extension for Chromium browsers works with the Sonatype Platform to empower Developers to make better choices earlier in the Software Development Lifecycle.
Connect this extension to your Organization's Sonatype Lifecycle Server and get instant risk insight as you browse public Open Source Registries such as Maven Central (for Java), NPM (for Javascript), PyPi (for Python) and many many more.
This extension supersedes our previous extension (Nexus IQ Chrome Extension) which is being retired by the end of 2023.
User reviews
- Helps identify high-risk security vulnerabilities in OSS components before downloading
- Provides insights into security and legal implications of components
- Facilitates early decision-making in the software development lifecycle (SDLC)
- Useful for researching open source components being considered for applications
- Useful plugin for analyzing OSS components
- Prevents mistakes early in the SDLC
- Supports shifting left approach in development
User reviews
Extension safety
Risk impact
Sonatype Platform Browser Extension requires a few sensitive permissions. Exercise caution before installing.
Risk likelihood
Sonatype Platform Browser Extension is probably trust-worthy. Prefer other publishers if available. Exercise caution when installing this extension.
Promo images
Similar extensions
Here are some Chrome extensions that are similar to Sonatype Platform Browser Extension: