IP Library Patent Application 18602830
Patent Application
App. No. 18/602,830

MANAGEMENT OF SOFTWARE DEPENDENCIES

Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US None
App. No.
18/602,830
Abstract

An example computer system for managing software dependencies can include: one or more processors; and non-transitory computer-readable storage media encoding instructions which, when executed by the one or more processors, causes the computer system to: identify a vulnerability associated with a dependency for a computer program as the computer program is being developed; determine a severity of the vulnerability; and manage the dependency based upon the severity of the vulnerability.

Claims (38)

1 . A computer system for managing software dependencies, comprising:

one or more processors; and

non-transitory computer-readable storage media encoding instructions which, when executed by the one or more processors, causes the computer system to:

identify a vulnerability associated with a dependency for a computer program as the computer program is being developed;

determine a severity of the vulnerability; and

manage the dependency based upon the severity of the vulnerability.

2 . The computer system of claim 1 , comprising further instructions which, when executed by the one or more processors, causes the computer system to block the dependency or block release of the computer program based upon the severity.

3 . The computer system of claim 1 , comprising further instructions which, when executed by the one or more processors, causes the computer system to generate an alert based upon the severity of the vulnerability.

4 . The computer system of claim 1 , comprising further instructions which, when executed by the one or more processors, causes the computer system to:

block downloading of the dependency;

block code including the dependency during versioning; and

block release of the computer program including the dependency.

5 . The computer system of claim 1 , wherein the dependency is managed using rules.

6 . The computer system of claim 5 , wherein the dependency is managed by:

create a risk score associated with all vulnerabilities for the computer program; and

use the rules to hold the computer program based upon the risk score.

7 . The computer system of claim 5 , wherein the rules are based upon the severity of the vulnerability and a context of the dependency.

8 . The computer system of claim 5 , wherein the rules are stored in a central database.

9 . The computer system of claim 1 , comprising further instructions which, when executed by the one or more processors, causes the computer system to generate a compliance report based upon vulnerabilities identified for the computer system.

10 . The computer system of claim 9 , comprising further instructions which, when executed by the one or more processors, causes the computer system to identify trends associated with the vulnerabilities identified for the computer system.

11 . A method for managing software dependencies, comprising:

identifying a vulnerability associated with a dependency for a computer program as the computer program is being developed;

determining a severity of the vulnerability; and

managing the dependency based upon the severity of the vulnerability.

12 . The method of claim 11 , further comprising blocking the dependency or block release of the computer program based upon the severity.

13 . The method of claim 11 , further comprising generating an alert based upon the severity of the vulnerability.

14 . The method of claim 11 , further comprising:

blocking downloading of the dependency;

blocking code including the dependency during versioning; and

blocking release of the computer program including the dependency.

15 . The method of claim 11 , wherein the dependency is managed using rules.

16 . The method of claim 15 , wherein the dependency is managed by:

creating a risk score associated with all vulnerabilities for the computer program; and

using the rules to hold the computer program based upon the risk score.

17 . The method of claim 15 , wherein the rules are based upon the severity of the vulnerability and a context of the dependency.

18 . The method of claim 15 , wherein the rules are stored in a central database.

19 . The method of claim 11 , further comprising generating a compliance report based upon vulnerabilities identified for a computer system.

20 . The method of claim 19 , further comprising identifying trends associated with the vulnerabilities identified for the computer system.

Assignments (2)
STATEMENT OF CHANGE OF ADDRESS OF ASSIGNEE Recorded Jun 17, 2025
From: WELLS FARGO BANK, N.A.
To: WELLS FARGO BANK, N.A.
Reel/Frame 071644/0971 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 29, 2024
From: IYER, PREETI SANTHANAM
To: WELLS FARGO BANK, N.A.
Reel/Frame 067252/0341 →