The all-in-one solution to manage your dependencies and stay CRA compliant
LibTracker automates the generation of your SBOM, monitors vulnerabilities in real-time, and guarantees your regulatory compliance
<5 min
CI/CD Integration
Sovereign solution
Happy devs
Automatic dependency tracking
Core Features
Everything you need for CRA compliance and much more
Automatic SBOM Generation
SBOM automatically generated at every build, without manual intervention
- SPDX, CycloneDX formats
- Direct and transitive dependencies
- Complete metadata (versions, licenses, hash)
Real-time CVE Detection
Continuous vulnerability monitoring with instant alerts
- CVE database synchronized regularly
- CVSS score and criticality
- Slack, Email, Webhooks alerts (in development)
Simple and fast integration
Compatible with your existing CI/CD tools and workflows
- GitHub Actions, GitLab CI, Jenkins
- VSCode plugin for developers (in development)
- Complete REST API
Guaranteed CRA Compliance
Meet Cyber Resilience Act requirements for software dependency management and traceability
- Article 23 compliant SBOM
- Automatic documentation
- Complete audit trail
How does it work?
A simple 4-step process
Send your .lock files
Transmit your dependency files via secure API, without repo access
.lock files analysis
LibTracker analyzes your dependency files (.lock) for maximum security
SBOM generated
SBOM production in SPDX/CycloneDX formats, available on LibTracker platform or stored on your infrastructure
Continuous monitoring
Real-time alerts on new CVEs
Supported Languages and Package Managers
Compatible with your technology stack
JavaScript/TypeScript
Python
Java/Kotlin
.NET/C#
PHP
Ruby
Go
Rust
And many more...
Use Cases
LibTracker adapts to your needs
Startups & Scale-ups
Implement CRA / SBOM compliance from the start. Monitor your dependencies without slowing down your development.
- Automatic SBOM for each release
- Compliance documentation
- Centralized multi-product management
Large enterprises
Manage security for hundreds of projects. Consolidated reports and dashboards for teams.
- Multi-team consolidated view
- Global security policies
- Group compliance reports
Agencies & IT Services
Offer CRA / SBOM compliance to your clients. Integration into your existing delivery processes.
- Native multi-tenancy
- Customized client reports
- Per-project billing
