Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Craftifact serves as a European SaaS platform designed for software teams that require dependable package distribution alongside enhanced supply-chain transparency. It offers various repository types including hosted, proxy, and group repositories for technologies such as Maven, npm, Python, OCI/Docker, and Go, all accompanied by a user-friendly browser interface for managing artifact metadata and repositories. Users can upload CycloneDX SBOMs and, for certain hosted items, generate them to be associated with specific artifacts or OCI digests. Teams have the capability to scrutinize dependencies and assess vulnerability, licensing, exposed-secret, and policy alerts in close proximity to the associated artifact. Access management is facilitated through OIDC, RBAC, group configurations, robot accounts, and scoped tokens, all supported by APIs designed for CI/CD and evidence workflows. Operated by a German firm under EU jurisdiction, Craftifact includes features such as managed updates, monitoring, and backups within the plan’s scope, ensuring predictable pricing that does not rely on seat counts. While it aids teams in fulfilling CRA-relevant technical preparations, it is important to note that it does not serve as a substitute for legal advice or conformity assessments. This combination of features makes Craftifact an essential tool for teams focused on both efficiency and compliance in their software development processes.

Description

OSPulse monitors your dependency tree similarly to how an on-call engineer operates. It meticulously cross-references your lockfile with over ten different threat-intelligence feeds, assessing each package for indicators of health, drift, and abandonment, ensuring you're informed of any exploited or compromised dependencies before a CVE is officially reported. Each alert is accompanied by comprehensive evidence, rather than just a simple score. OSPulse also provides a command-line interface, a typed API, and generates Software Bill of Materials (SBOM) outputs in both CycloneDX and SPDX formats, alongside policy gates that can trigger a build failure. In the event that a dependency you depend on becomes actively targeted, OSPulse captures the moment you were notified and automatically prepares the necessary report for compliance with Article 14 of the EU Cyber Resilience Act, ensuring you meet the mandated deadlines. This proactive approach not only enhances your security posture but also streamlines your regulatory compliance efforts.

API Access

Has API No 

API Access

Has API No 

Screenshots View All

Screenshots View All

No images available

Integrations

No details available.

Integrations

No details available.

Pricing Details

€99/month
Optional add-ons and annual discount available.
Free Trial Yes 
Free Version No 

Pricing Details

£2,988/year
Free Trial No 
Free Version No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows Yes 
Mac Yes 
Linux Yes 
Chromebook No 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Customer Support

Business Hours No 
Live Rep (24/7) No 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Vendor Details

Company Name

SoluForge

Founded

2025

Country

Germany

Website

craftifact.com

Vendor Details

Company Name

Fortitude Omnis Group Ltd

Founded

2025

Country

United Kingdom

Website

ospulse.app

Product Features

Product Features

Vulnerability Management

Asset Discovery No 
Asset Tagging No 
Network Scanning No 
Patch Management No 
Policy Management No 
Prioritization No 
Risk Management No 
Vulnerability Assessment No 
Web Scanning No 

Alternatives

Alternatives

Threat Detective Reviews

Threat Detective

Threat Detective Ltd