Spectra Assure
Community
Docs

Spectra Assure Community

Find the best building blocks for your next app.

Secure open source

Secure open source

Building secure software requires the best of Open Source.


Spectra Assure Community allows you to review the key aspects of software safety before including your next dependency.

Share assessment reports

Share assessment reports

Customers demand software transparency.


Go beyond sharing a simple SBOM. Demonstrate your commitment to building secure software. Share assessments, raise concerns, and triage issues together with your users. Cut the noise and prioritize what matters.

Secure dev toolchains

Secure dev toolchains

Building secure software relies on trustworthy development toolchains.


Spectra Assure Community allows you to trust the compilers, linkers, IDE plugins and CI/CD pipelines that you use to build apps.

Complete approach to
secure software supply chains

Malicious attacks on public open source repositories are now as pervasive as developers' use of open source dependencies. Spectra Assure Community monitors open source packages to identify malware, code tampering and indicators of software supply chain attacks.

Quick guided tour

Learn how our reports help you make the best choices for keeping your credentials, projects and end-users safe from malicious attacks.

0M  
Number of Packages
0k  
Malicious Packages
0k  
ReversingLabs Research

ReversingLabs loves open source

ReversingLabs Threat Research team protects Open Source communities from threats hidden in the software supply chain. Using the Spectra Assure platform capabilities, our team helps with removing malicious code from package repositories. Threat intelligence found on this website is shared back with the Open Source community.

We contribute the lists of malicious packages we discover to the OSSF Malicious Packages Database.