future-architect/uzomuzo-oss
Dead code doesn't get patched. Detect abandoned & end-of-life dependencies that SCA tools miss — before they become the next xz-utils.
GitHub repository with 23 stars and 2 forks.
Language: Go
Topics: abandoned-software, cli, cyclonedx, devsecops, eol-detection, go, golang, openssf-scorecard, purl, sbom