Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Format ADOPTERS.md as table #4298

Merged
merged 1 commit into from
Oct 23, 2024
Merged
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
42 changes: 21 additions & 21 deletions ADOPTERS.md
Original file line number Diff line number Diff line change
Expand Up @@ -6,32 +6,32 @@
This is a list of organizations that have spoken publicly about their adoption or
production users that have added themselves (in alphabetical order):

* [Rohde & Schwarz](https://www.rohde-schwarz.com/): At Rohde & Schwarz, we are deeply committed to ensuring the
cybersecurity of our products, systems, and solutions. As part of our comprehensive security strategy,
we utilize a diverse set of tools to safeguard our technology. We value Dependency-Track for its scalability,
adherence to open standards, and active community. Additionally, we actively contribute to the development of
Dependency-Track by adding features, improving its usability for large organizations, and strengthening its security posture.
* [World Kinect Corporation](https://world-kinect.com/) uses Dependency-Track to continuously identify software supply chain risks and to enforce policy compliance across the portfolio.
World Kinect's usage of Dependency-Track was [showcased in the community meeting of May 2024](https://www.youtube.com/watch?v=MS2DlMdUI7Q&t=1320s).
| Organization | Contact | Description |
|:----------------------------------------------------------------------------------------------------------------------------------------------|:--------------------------------|:-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| <img src="https://avatars.githubusercontent.com/u/39411067?s=200&v=4"/> [Rohde & Schwarz] | [@lukas-braune] | At Rohde & Schwarz, we are deeply committed to ensuring the cybersecurity of our products, systems, and solutions. As part of our comprehensive security strategy, we utilize a diverse set of tools to safeguard our technology. We value Dependency-Track for its scalability, adherence to open standards, and active community. Additionally, we actively contribute to the development of Dependency-Track by adding features, improving its usability for large organizations, and strengthening its security posture. |
| <img src="https://avatars.githubusercontent.com/u/43382006?s=400&u=c45feb70b5eeb3393b43dd1b73c729815e65b2e8&v=4"/> [World Kinect Corporation] | [@aravindparappil46], [@setchy] | World Kinect Corporation (NYSE: WKC) uses Dependency-Track to continuously identify software supply chain risks and to enforce policy compliance across the portfolio. Its usage of Dependency-Track was [showcased in the community meeting of May 2024](https://www.youtube.com/watch?v=MS2DlMdUI7Q&t=1320s). |

This is a list of adopters in early stages of production or
pre-production (in alphabetical order):

* [Air France-KLM](https://www.airfranceklm.com/) has always been highly vigilant and profoundly committed to the realm of IT security. We use a variety of tools to ensure our systems' safety, one of which is the OWASP Dependency Track. This tool forms a crucial part of our vulnerability detection systems, scanning the Software Bill of Materials (SBOM) for each application and sending it to our in-house DT instance. With over 10,000 projects undergoing daily scans, our security measures are both comprehensive and rigorous.

The Dependency Track API is not only highly configurable but also user-friendly, boasting a visually appealing user interface. The project is in a constant state of evolution, adapting and improving to meet the ever-changing landscape of IT security. The community of DT contributors is always ready to lend a hand when issues arise, making it not just an effective tool, but also a pleasure to work with as a developer.

We extend our gratitude to the team behind the OWASP Dependency Track for their excellent work. We look forward to welcoming you aboard our flights soon!

* [Apex Fintech Solutions](https://apexfintechsolutions.com/) has integrated OWASP Dependency-Track into their CI/CD pipeline as part of the DevSecOps program. This integration allows for the upload of SBOMs (Software Bill of Materials) to the platform for comprehensive component analysis and a detailed understanding of the software inventory used in software applications. By analyzing the components in our monorepo, we enhance our vulnerability management program and gain valuable insights into transitive dependencies, which traditional SCA (Software Composition Analysis) tools often overlook.

* [Dutch Tax Office - Belastingdienst](https://www.belastingdienst.nl/) has integrated OWASP Dependency-Track into their
development processes as part of the DevSecOps program. We integrate Dependency-Track
with various platforms and programming languages to gain vulnerability insights in
our internally developed software. We want to thank all contributors of Dependency-Track creating a resilient and
extensible SCA tool. Especially the API is a huge asset to integrate
within the current organization processes.
| Organization | Contact | Description |
|:-------------------------------------|:---------------|:-------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
| [Air France-KLM] | [@nekhtan] | Air France-KLM has always been highly vigilant and profoundly committed to the realm of IT security. We use a variety of tools to ensure our systems' safety, one of which is the OWASP Dependency Track. This tool forms a crucial part of our vulnerability detection systems, scanning the Software Bill of Materials (SBOM) for each application and sending it to our in-house DT instance. With over 10,000 projects undergoing daily scans, our security measures are both comprehensive and rigorous. The Dependency Track API is not only highly configurable but also user-friendly, boasting a visually appealing user interface. The project is in a constant state of evolution, adapting and improving to meet the ever-changing landscape of IT security. The community of DT contributors is always ready to lend a hand when issues arise, making it not just an effective tool, but also a pleasure to work with as a developer. We extend our gratitude to the team behind the OWASP Dependency Track for their excellent work. We look forward to welcoming you aboard our flights soon! |
| [Apex Fintech Solutions] | [@spawar-apex] | Apex Fintech Solutions has integrated OWASP Dependency-Track into their CI/CD pipeline as part of the DevSecOps program. This integration allows for the upload of SBOMs (Software Bill of Materials) to the platform for comprehensive component analysis and a detailed understanding of the software inventory used in software applications. By analyzing the components in our monorepo, we enhance our vulnerability management program and gain valuable insights into transitive dependencies, which traditional SCA (Software Composition Analysis) tools often overlook. |
| [Dutch Tax Office - Belastingdienst] | [@SudoHenk] | Dutch Tax Office has integrated OWASP Dependency-Track into their development processes as part of the DevSecOps program. We integrate Dependency-Track with various platforms and programming languages to gain vulnerability insights in our internally developed software. We want to thank all contributors of Dependency-Track creating a resilient and extensible SCA tool. Especially the API is a huge asset to integrate within the current organization processes. |

If you have adopted OWASP Depenency Track and would like to be included in this list,
feel free to submit a PR updating this file or
[open an issue](https://github.com/).

[@SudoHenk]: https://github.com/SudoHenk
[@aravindparappil46]: https://github.com/aravindparappil46
[@lukas-braune]: https://github.com/lukas-braune
[@nekhtan]: https://github.com/nekhtan
[@setchy]: https://github.com/setchy
[@spawar-apex]: https://github.com/spawar-apex
[Air France-KLM]: https://www.airfranceklm.com/
[Apex Fintech Solutions]: https://apexfintechsolutions.com/
[Dutch Tax Office - Belastingdienst]: https://www.belastingdienst.nl/
[Rohde & Schwarz]: https://www.rohde-schwarz.com/
[World Kinect Corporation]: https://world-kinect.com/