• Toolbox
  • Explore
  • Learn
  • ReversingLabs
  • Spectra Assure
    Community

    Spectra Assure Community

    Find the best building blocks for your next app.

    Secure open source

    Secure open source

    Building secure software requires the best of Open Source.


    Spectra Assure Community allows you to review the key aspects of software safety before including your next dependency.

    Share assessment reports

    Share assessment reports

    Customers demand software transparency.


    Go beyond sharing a simple SBOM. Demonstrate your commitment to building secure software. Share assessments, raise concerns, and triage issues together with your users. Cut the noise and prioritize what matters.

    Secure dev toolchains

    Secure dev toolchains

    Building secure software relies on trustworthy development toolchains.


    Spectra Assure Community allows you to trust the compilers, linkers, IDE plugins and CI/CD pipelines that you use to build apps.

    Complete approach to
    secure software supply chains

    Malicious attacks on public open source repositories are now as pervasive as developers' use of open source dependencies. Spectra Assure Community monitors open source packages to identify malware, code tampering and indicators of software supply chain attacks.

    Quick guided tour

    Learn how our reports help you make the best choices for keeping your credentials, projects and end-users safe from malicious attacks.

    0.0
    Number of Packages
    and 141.32M versions in total
    0
    Malicious Packages
    including 924.81k known malicious versions
    0
    ReversingLabs Research
    reported as malicious versions

    ReversingLabs loves open source

    ReversingLabs Threat Research team protects Open Source communities from threats hidden in the software supply chain. Using the Spectra Assure platform capabilities, our team helps with removing malicious code from package repositories. Threat intelligence found on this website is shared back with the Open Source community.

    We contribute the lists of malicious packages we discover to the OSSF Malicious Packages Database.

    This website uses cookies to ensure the best website experience. By continuing to use this website you are giving your consent to cookies being used. Detailed information about our use of cookies is here.