Dependa User Manual
v2.0 — Last updated: April 1, 2026
Table of Contents
- Getting Started
Installation, first launch, and screen overview
- SBOM Import & Folder Scan
Auto-detect CycloneDX / SPDX import, folder scan for dependency detection
- Vulnerability & Risk Analysis
CVSS scoring, RiskReason, RecommendedAction, Evidence, and Confidence
- License Analysis
Automatically classify license risks (High Risk / Risk / Known-Normal) with online enrichment
- Reports & SBOM
Executive Summary, Action Required, Risk Analysis, AI section, review statistics
- Policy Settings & Judgments
Organization policy-based review (Allowed / NeedApproval / Prohibited)
- Delta Scan
Detect changes from previous scan for continuous review (Pro)
- Exception Management
Approve and track vulnerability/license exceptions (Pro)
- AI Governance Analysis
AI BOM, Excessive Agency, Data Sovereignty, ExternalServiceUsage, Organization Policy
- IaC Support
Detect AI resources from Terraform / Bicep / ARM JSON
- Settings
Language, online enrichment, and license management
- Pro Features Guide
Unlimited review, approval workflow, full reports, SBOM diff, online enrichment, multiple projects
- CLI Reference
Command-line usage and automation scripts
- Licensing & Purchase
Free vs Pro plan comparison and how to purchase
- Troubleshooting
Error message reference, SBOM format issues, and settings reset