oss-due-diligence
Assess open-source dependencies through due diligence and red-team checks
Assess open-source dependencies through due diligence and red-team checks
oss-due-diligence guides a four-phase assessment of open-source repositories and third-party dependencies: identity and license checks, adversarial review, operating posture, and incident response. It adjusts emphasis for project archetypes and includes shell scripts for dependency hygiene, risky patterns, secrets, and release signals. The methodology is explicit about what was checked and avoids treating a limited review as proof that a dependency is safe.
Resource types
Use cases
Platforms
Capabilities
Audit suspension risks in a Claude Code working environment.
Check whether a specific CVE actually applies to your environment.
Public GitHub facts last synced Jul 10, 2026.
Store and inject development secrets through 1Password from Claude Code.
Audit a deployed public app for production gaps missed during coding.