Dependency Heaven

3 min
May 2025 FOSSA Product Updates
Learn about several recent FOSSA product updates, including container scanning and CycloneDX report improvements.

5 min
Annotate Dependencies with Context: Introducing Package Labels in FOSSA
Introducing FOSSA Package Labels - a powerful way to annotate packages with contextual metadata, enabling more efficient and insightful reporting and filtering.

8 min
Slopsquatting: AI Hallucinations and the New Software Supply Chain Risk
Learn about slopsquatting, an emerging category of software supply chain risk that can stem from AI coding tools.