SecLifecycle Hub is in beta. Most of it works well today, but a few areas are still catching up — here's exactly where things stand, so you're never caught off guard by a gap you didn't already know about.
These are live now — nothing here is broken, but each has a known edge worth knowing about.
Search currently checks GitHub only. If a project's canonical source lives on GitLab, Bitbucket, or elsewhere, results may be missing or show a lower-confidence match. GitLab and Bitbucket support is in active development.
Results aren't yet cross-checked against the vendor's own site. Treat a GitHub-derived match as a strong starting point, not a guarantee — confirm before relying on it for lifecycle decisions.
Well-known projects resolve reliably. Less common or newer software may not be found automatically yet — you can always add it manually via the vendor URL field.
In progress, in priority order.
Checking a software's official site (via Wikidata, package registries, and vendor metadata) before search results are shown, to catch mismatches earlier.
GitLab, Bitbucket, and direct vendor lookups, alongside GitHub.
When a match isn't certain, you'll be asked to confirm it — instead of the system silently picking its best guess.
Tell us what you saw — it goes straight into what we fix next.
Last updated manually — replace with a build/version stamp when wired into the app.