Versions:

  • 3.16.7
  • 3.16.6
  • 3.16.5
  • 3.16.4
  • 3.16.3
  • 3.16.2
  • 3.16.1
  • 3.16.0
  • 3.15.9
  • 3.15.8
  • 3.15.7
  • 3.15.6
  • 3.15.5
  • 3.15.4
  • 3.15.3
  • 3.15.2
  • 3.15.1
  • 3.15.0
  • 3.14.1
  • 3.14.0
  • 3.13.1
  • 3.13.0
  • 3.12.3
  • 3.12.2
  • 3.12.1
  • 3.12.0
  • 3.11.12
  • 3.11.11
  • 3.11.10
  • 3.11.9
  • 3.11.8
  • 3.11.7
  • 3.11.6
  • 3.11.5
  • 3.11.3
  • 3.11.2
  • 3.11.1
  • 3.11.0
  • 3.10.14
  • 3.10.13
  • 3.10.12
  • 3.10.11
  • 3.10.10
  • 3.10.9
  • 3.10.8
  • 3.10.7
  • 3.10.6
  • 3.10.5
  • 3.9.47
  • 3.9.5
  • 3.9.4
  • 3.9.3
  • 3.9.2
  • 3.9.1
  • 3.9.0
  • 3.8.34
  • 3.8.12
  • 3.8.10
  • 3.8.6
  • 3.8.5
  • 3.8.2
  • 3.8.0
  • 3.7.11

FOSSA CLI is a fast, portable and reliable command-line utility whose sole purpose is to deliver exhaustive dependency analysis for any codebase, enabling development, security and compliance teams to discover, track and report every open-source component embedded in their projects. Written in Go and distributed as a single self-contained binary, the tool integrates transparently into CI pipelines, container builds and local development workflows, scanning package manifests, lock files and installed artifacts across more than 120 language ecosystems—including npm, Maven, Gradle, Go modules, Cargo, NuGet, Pip and RubyGems—without requiring source-code upload or network access to external services. Once dependencies are identified, the CLI emits machine-readable JSON, SPDX, CycloneDX or custom reports that can be consumed by license-policy engines, vulnerability scanners and SBOM generators, supporting use cases such as license compliance audits, software-supply-chain security reviews, M&A due-diligence checks and regulatory submissions. Version 3.16.7, the 63rd public release since the project’s inception, continues the tool’s tradition of zero-dependency distribution, sub-second scan times and deterministic output hashes, making it suitable for reproducible builds and containerized environments. The executable runs natively on Windows, macOS and Linux, accepts path filters and ignore rules to reduce noise in monorepos, and respects proxy settings for enterprises operating behind restrictive firewalls. As an essential component of the broader FOSSA platform, the CLI can also be used in standalone mode when air-gapped or offline operation is mandated. The software is available for free on get.nero.com, with downloads provided via trusted Windows package sources (e.g. winget), always delivering the latest version, and supporting batch installation of multiple applications.

Tags: