Contributor Origin Analyzer
This API analyzes GitHub repositories for contributor origin, organization flags (e.g., huawei.com), and suspicious file-level changes such as cryptography, Docker, or CI/CD scripts. Ideal for organizations securing open-source intake pipelines.
Contributor Origin Analyzer endpoints
| Method | Endpoint | Description |
|---|---|---|
| POST |
analyze-sbom /analyze-sbom |
Analyzes multiple GitHub repositories (e.g., from an SBOM) for potentially flagged contributors in batch mode. |
| POST |
analyze /analyze |
Analyze GitHub repo contributors against flagged countries, affiliations, and commit activity |
Contributor Origin Analyzer pricing
| Plan | Price | Rate limit | Quotas |
|---|---|---|---|
| BASIC | Free | — |
|