SOOS is an independent software security company, located in Winooski, VT USA, building security software for your team. SOOS, Software security, simplified.
Use SOOS to scan your software for vulnerabilities and open source license issues with SOOS Core SCA. Generate and ingest SBOMs. Export reports to industry standards. Govern your open source dependencies. Run the SOOS DAST vulnerability scanner against your web apps or APIs. Scan your Docker containers for vulnerabilities. Check your source code for issues with SAST Analysis.
Demo SOOS or Register for a Free Trial.
If you maintain an Open Source project, sign up for the Free as in Beer SOOS Community Edition.
- You must have a valid SOOS account. Register for a Free Trial
- Configure the secrets using the
Configure SOOS SCA Secretscommand. You will be prompted for your client id and api key, which can both be found on the integrate page within the SOOS app.
- Configure Project Name and additional settings using the
Configure SOOS SCA Scancommand.
- Once settings and secrets have been configured, you have two options to run a scan. You may either open the command palette and type
Run SOOS SCA Scan, or select the folder directly from the sidebar and click onRun SOOS SCA Scan.
- Publish your extension on the VS Code extension marketplace.
- Extension Manifest



