WhiteSource Releases New Apache Maven Plugin for Automatic, Continuous Monitoring
WhiteSource, the leading provider of SaaS open source lifecycle management solutions, announced today the release of the Apache Maven plugin. The new plugin enables software developers to automatically update their open source inventory to the WhiteSource service to increase productivity and mitigate legal and technical risk. The new plugin further establishes WhiteSource as the most convenient and cost-effective solution for companies of all sizes.
WhiteSource provides a simple to use, yet powerful solution for companies that need to manage their open source assets to ensure license compliance in order to avoid pitfalls such as lawsuits, penalties and lost business. Developers and managers use WhiteSource’s free cloud-based solution to track, audit and report on open source components throughout the software development lifecycle.
Apache Maven is a software project management and comprehension tool. Based on the concept of a project object model, Maven manages a project’s build, reporting and documentation from a central piece of information. The new Apache Maven plugin continuously and automatically delivers information about open source components being used to the WhiteSource platform-without any overhead.
“With the new plugin, we no longer need to rely on a developer to report a new open source component. It is automatically reported to our WhiteSource service as soon as it is added to our project,” said Roy Hessel, EyeBuyDirect CEO. “This allows us to accelerate our development process and manage our open source license more efficiently, and with fewer errors.”
“Our goal is to fully automate the tracking of open source assets in the organization. We started by creating the Maven plugin for more automatic, continuous monitoring of open source components and licenses,” said WhiteSource CEO Rami Sass. “We will continue to provide additional plugins in the future and make WhiteSource even easier to adopt, use and maintain.”
WhiteSource is offered as a free, cloud-based service. WhiteSource fully supports Java and plans to support additional languages in the future. The company intends to add premium services for a monthly subscription fee. To register for the service or for more information, visit https://www.mend.io/

About Mend.io
Mend.io offers the first AI native application security platform, empowering organizations to build and run a proactive AppSec program tuned for AI powered development. The unified platform secures AI generated code and embedded AI components, drives risk reduction through AI powered remediation, automates compliance, and provides a holistic enterprise scale view of risks and clear actions for developers across your entire codebase.