Quality — FOSSA Docs Docs Search docs... ⌘K
Docs API CLI Glossary
Launch App
User Guides
Product Guides
Get Started
Project Setup
Release Groups
Issues
Licenses
Vulnerabilities
Quality
Understanding Quality Issues Reviewing Quality Issues Quality Scanning
SBOM
Policies
Reports
FOSSA CLI
API Reference
Integrations
fossabot
Organization Management
On-Premises Deployment
Help & Support
Legal
Get Support fossa.com
On this page
* Overview
* What this covers
* Put it to work
On this page
Docs Quality
Quality
Assess dependency health, quality scoring, and maintenance signals for the packages you depend on.
1 min read Updated Aug 26, 2026 Copy link
Overview
Beyond licenses and CVEs, the long-term risk of a dependency comes from how well it's maintained. FOSSA 's quality scanner evaluates every direct and transitive dependency and raises a quality issue (in the project 's Issues tab) when a package is outdated, blocked, or shows a supply-chain risk signal.
What this covers
* Understanding Quality Issues : what each issue type means: outdated versions, blocked packages, and the risk-intelligence signals (abandonware, empty packages, native code).
* Reviewing Quality Issues : triage and resolve quality issues across your projects.
* Quality Scanning : how quality issues are generated and gated in CI/CD.
Put it to work
* Use Quality Policies to gate on quality thresholds across your projects, so unhealthy dependencies raise issues automatically.
* Review what FOSSA finds alongside your licensing and security issues; the same triage workflow surfaces all three.
Previous Project Setup Next Release Groups
© 2026 FOSSA, Inc.
[email protected]