Audit your dependency tree's open-source licenses locally: classify permissive/copyleft/AGPL/proprietary/unknown, enforce an allow-deny policy, and generate a CycloneDX SBOM + third-party notices. No SaaS, no upload.
cli typescript supply-chain license copyleft spdx oss-compliance sbom cyclonedx license-checker license-audit third-party-notices dependency-license gpl-checker
-
Updated
Jun 1, 2026 - TypeScript