Open Source Intelligence

SetIntel - Your Source for OSS Intelligence

Gather intelligence on the health and risk of the contributors, community and code within your open source software. Start your journey on understanding a system-level view of your software ecosystem.

Contributor Visibility

Obtain the visibility and identify of OSS contributors, as well as their geographic provenance. Are they verified or un-verified contributors? Are they real or BOTs? Are they from geographic regions known for cyber risk? Are there anomalies or irregular behavior in their commits?

Comparables

Identify comparable open source repositories based on core capabilities, use case, language, size as well as different health and risk scores. Determine fit based on technical, performance and business metrics.



Code Risk and Insights

Gather insights about the code quality of an open source repository, including views on key vulnerabilities including CVEs, CWEs, CVSS, EPSS, KEVs as well as threat metrics such as attack patterns, TTPs and known threat actors.



Community Health

Understand the security and maintainability of an open source repository. Through the Open SSF Scorecard, gain visibility into the health and risk of a repository. Also gain insights into the End of Support (EOL) and End of Life (EOL) of a component.


Benchmark Data Set

Compare and contrast open source metric across our benchmark dataset of other open source repositories. Leverage our knowledge graph on how different metrics track over time.


System of System View

Gain a system-level understanding of your data, beyond just a single OSS component. How do components work together, where are the dependencies and how do you prioritize risk at an ecosystem level. Gain context on what the threat is and the impact area within your software, leveraging SettleTop’s network graphing and AI Agent tools.