Sonatype Nexus IQ Evaluation - Scan Open Source Repositories for known Vulnerabilities.
Sonatype Nexus IQ Evaluation - Open Source Security Check
Sonatype Nexus IQ Evaluation is a Chrome extension allowing users to inspect open source packages for security vulnerabilities before downloading them. It is designed to integrate with a valid Sonatype Nexus Lifecycle instance, allowing for detailed package analysis. The plugin supports multiple package managers across diverse platforms, enabling broad-spectrum inspection of risky open source repositories.
Extension stats
Manifest V2
Rating: 5.00
(4)
Creation date: 2020-05-27
Permissions:
- activeTab
- declarativeContent
- cookies
- background
- storage
- https://pkgs.alpinelinux.org/
- https://anaconda.org/anaconda/
- https://community.chocolatey.org/
- https://clojars.org/
- https://cocoapods.org/
Size: 2.40M
Email: co*****@sonatype.com
URLs: Website ,Privacy policy
Full description: See detailed description
Ranking
Other platforms
Not available on Android
Not available on Firefox
Not available on Edge
User reviews
A great tool for analyzing OSS components on the web for high-risk security vulnerabilities prior to downloading for use. Prevent mistakes early on in the SDLC by alerting on insecure packages before they are built in to application code.
by
Neil Schloth, 2020-07-22
Extension safety
Risk impact
Sonatype Nexus IQ Evaluation requires some sensitive permissions that could impact your browser and data security. Exercise caution before installing.
Risk impact analysis details
- Critical Request access to the following domains: alpinelinux.org, anaconda.org, chocolatey.org, clojars.org, cocoapods.org, r-project.org, crates.io, debian.org, github.com, mvnrepository.com, npmjs.com, nuget.org, sonatype.org, packagist.org, pypi.org, maven.org, apache.org, rpmfind.net, rubygems.org, go.dev, spring.io, conan.io
- High ******* ******* **** *** ****** ***** *** ***** ** ******* **** ********* ********* ** * *********** *****
Risk likelihood
We don't have sufficient data to confidently determine the risk likelihood of Sonatype Nexus IQ Evaluation. Use it at your own risk.
Risk likelihood analysis details
- High This extension has low user count. Unpopular extensions may not be stable or safe.
- Low **** ********* *** ******* **** **** * ****** **** ***** ******** *** **** ****** ** ** ****** *** *****
- Low **** ********* *** ***** **** **** * ****** **** ***** ********** *** **** ****** ** ** ****** *** *****
- Good **** ********* *** **** **** *******
Upgrade to see full risk analysis details
Promo images
Similar extensions
Here are some Chrome extensions that are similar to Sonatype Nexus IQ Evaluation:
Ezinwa Okpoechi
299
Gainsight
10K
Vivun Inc.
2K
Unknown
223
https://youcanbook.me
5K
seanmysell
66
City Technology Training
7
https://debricked.com
111
Unknown
12
https://www.cyberciti.biz
162
https://sonatype-nexus-community.github.io/sonatype-platform-browser-extension
2K
etokenapp
44