Start Here: The End-to-End Workflow
The End-to-End Workflow is the fastest way to see SCANOSS working across a full license-compliance lifecycle, in one guide, without jumping between pages. It takes you from an empty repo to:- Pre-commit hooks catching undeclared open-source components before code is even committed
- A GitHub Actions workflow enforcing copyleft and undeclared-component policies on every pull request
- Dependency-Track managing vulnerabilities and organisation-wide licence policy over time
The End-to-End Workflow covers license compliance and vulnerability
monitoring, but not encryption detection. If you also want to evaluate
cryptographic algorithm scanning, add Advanced Analysis
from the modular path below.