SCANOSS_ Profile Banner
SCANOSS Profile
SCANOSS

@SCANOSS_

Followers
8
Following
28
Media
18
Statuses
74

Open source risk management made simple. Scan it. Know it. Fix it. Powered by the largest OSS database on the planet.

Wherever your OSS lives
Joined May 2025
Don't wanna be here? Send us removal request.
@SCANOSS_
SCANOSS
5 days
SCANOSS Workbench v1.19.0 is live 🚀. ✅ RAW results import (viewer mode).✅ Import w/ source for side-by-side review.✅ CycloneDX + SPDX Lite exports. Details →
Tweet card summary image
scanoss.com
We’ve just rolled out SCANOSS Workbench v1.19.0, packed with new import options, stronger SBOM exports, and fixes that make it even easier to work with real-world scan results.What’s New in SCANOSS...
0
1
0
@SCANOSS_
SCANOSS
7 days
If you're mapping out your #OSSummit week—make room for this. Matias D’Aloia (SCANOSS) is bringing real crypto detection to the stage. Why? Because post-quantum risk starts with knowing what your OSS is doing. 🧾 Details in flyer.🔗
Tweet media one
0
0
0
@grok
Grok
22 days
Introducing Grok Imagine.
2K
4K
28K
@SCANOSS_
SCANOSS
8 days
Banks must now:.- Map all cryptographic usage.- Monitor third-party encryption.- Prepare for post-quantum migration.Regulations like DORA and guidance from the NCSC require clear action. This blog explains what financial institutions need to do now.
Tweet card summary image
scanoss.com
The introduction of the Digital Operational Resilience Act (DORA) has transformed how banks are expected to manage encryption. As of January 2025, all financial entities operating in the EU -...
0
0
0
@SCANOSS_
SCANOSS
8 days
Today at OSS Europe!. If you're in Amsterdam, swing by Elicium 2B at 16:30 to hear Matias D’Aloia explain how SCANOSS detects cryptographic functions across open source codebases at scale. 🔗
osseu2025.sched.com
View more about this event at Open Source Summit Europe 2025
0
0
0
@SCANOSS_
SCANOSS
15 days
1 week to #OSSummit Europe!. Join SCANOSS’s Matias Daloia on Mon, Aug 25 at 16:30 (Room G106) for:. 🔐 Know Your Crypto: Standardising + detecting crypto algorithms the open source way. Don’t miss it →
osseu2025.sched.com
View more about this event at Open Source Summit Europe 2025
0
0
0
@SCANOSS_
SCANOSS
18 days
SBOM Workbench v1.19 is out. New toys:.• Import RAW results directly.• Bring in projects with source.• CycloneDX output plays nicer with Dependency Track. Grab it:
Tweet card summary image
github.com
What's Changed Added: SCANOSS Integration: Added option to import SCANOSS scan raw results Project Importation: Added import project dialog with optional source code inclusion Code Editor: Add...
0
1
0
@SCANOSS_
SCANOSS
19 days
Declared dependencies ≠ full visibility. Most risks hide in reused code, stripped of metadata and licensing. SCANOSS detects these at the snippet level — and helps generate complete, verifiable SBOMs. Read the whitepaper →
0
0
0
@SCANOSS_
SCANOSS
21 days
Governance is more than SBOM generation. It’s about traceability, auditability, and real-time integration into CI/CD. SCANOSS supports all three. Read the full whitepaper →
0
0
0
@SCANOSS_
SCANOSS
21 days
You also need to know who wrote the code and where — contributor origin is becoming a compliance concern under export controls.
1
0
0
@SCANOSS_
SCANOSS
21 days
Legacy tools can’t catch that. SCANOSS scans at the snippet level, detecting reused or stripped-down code across massive codebases.
1
0
0
@SCANOSS_
SCANOSS
21 days
The problem isn’t just what’s declared — it’s what isn’t. Undeclared open source code (copied, modified, unreferenced) can introduce licensing and security liabilities without warning.
1
0
0
@SCANOSS_
SCANOSS
21 days
SBOMs have become a requirement — but they still miss the most important risks in the supply chain. Here's what the new SCANOSS whitepaper uncovers 👇.
1
0
0
@SCANOSS_
SCANOSS
24 days
Most software includes crypto. Most orgs don’t know what or where. That’s the problem. We’ll talk solutions at #OSSummit Europe:.SPDX. Open datasets. Real transparency. 🎤 Mon 25 Aug | 16:30 | Elicium 2B.
0
0
0
@SCANOSS_
SCANOSS
26 days
We’re speaking at #OSSummit Europe!. Talk: Know Your Crypto.📅 Mon 25 Aug | 🕓 16:30 CEST.📍 Elicium 2B. From SPDX to open datasets, SCANOSS will share how to make crypto transparency real. Don’t miss it →
Tweet media one
0
0
0
@SCANOSS_
SCANOSS
27 days
Forget clean syntax. AI doesn’t want your pretty code. Our CTO built an entire Swift app without seeing a line of Swift. What he found? A glimpse into a post-human programming model. New post:
Tweet card summary image
scanoss.medium.com
I recently embarked on what felt like a digital expedition: building a complete Swift application using nothing but Claude Code, never once…
0
0
0
@SCANOSS_
SCANOSS
29 days
“Software isn’t manufactured. It’s composed.”. And that’s where traditional SCRM breaks down. New blog: how to rethink software supply chain risk. →
scanoss.com
We’ve previously written about the strategic value of Software Bills of Materials (SBOMs): how they improve visibility, support due diligence, and form the backbone of secure software delivery. But a...
0
0
0
@SCANOSS_
SCANOSS
1 month
What’s the weakest link in your software supply chain?. SCRM isn’t just about inventories. It’s about evidence. Read why SBOMs need validation — and how real supply chain risk starts at the code level. Blog:
scanoss.com
We’ve previously written about the strategic value of Software Bills of Materials (SBOMs): how they improve visibility, support due diligence, and form the backbone of secure software delivery. But a...
0
0
0
@SCANOSS_
SCANOSS
1 month
SBOMs show what’s declared. SCRM asks: can you prove it?. Modern software is assembled, copied, even AI-generated. Verification, not assumption, is the real risk control.
0
0
0
@SCANOSS_
SCANOSS
1 month
What’s the weakest link in your software supply chain?.
0
0
0
@SCANOSS_
SCANOSS
1 month
No vendor lock-in. No black-box audits. Just open, auditable, continuous compliance. Read the whitepaper →
0
0
0