The TL;DR talk description:

What does your dependency tree tell you?
Which of your projects should you fund?
What deprecated or unmaintained software are you using?

...and many more insights!!

Using the Dependency Management Data project (https://dmd.tanna.dev)

--------------

The incredibly long talk description:

I've always been interested in the composition of Open Source and internal dependencies that my projects use, and after years of wanting some way to query the data, I went ahead and built it!

Having access to this data has allowed me and my team to get a view of what our most popular languages or frameworks are, which packages we didn't realise we so heavily rely on, determine how many dependencies are using end-of-life software, or just understand the way that internally-built libraries are used across the organisation.

This data has given my company's developers, leadership and the security team a better view of the landscape of our ever growing dependencies on Open Source, so we can appropriately upgrade, migrate, and support projects.

In this talk, you'll learn that it's straightforward to do this yourself with Free and Open Source Software, as well as looking at some examples of the data that you can get out of this tooling for your own purposes.

Comments

Please login to leave a comment