{"repository": "olive-editor/olive", "owner": "olive-editor", "name": "olive", "source_url": "https://github.com/olive-editor/olive", "description": "Free open-source non-linear video editor", "homepage": "https://olivevideoeditor.org/", "license_id": "GPL-3.0", "license_label": "GPL-3.0 déclarée", "license_status": "ouverte_avec_conditions", "commercial_use": "possible, obligations à vérifier", "stars": 9132, "forks": 619, "open_issues": 159, "language": "C++", "topics": ["cpp", "cross-platform", "glsl", "hardware-acceleration", "linux", "macos", "opengl", "qt", "video-editor", "vst", "windows"], "archived": false, "disabled": false, "updated_at": "2026-10-08T00:15:36Z", "pushed_at": "2024-12-05T10:34:17Z", "default_branch": "master", "release_tag": "", "release_date": "", "release_assets_bytes": null, "packages": [{"system": "GO", "name": "github.com/olive-editor/olive", "version": "v0.0.0-20240115165711-bfc0d3191826", "purl": "", "published_at": "", "vulnerabilities": []}, {"system": "GO", "name": "github.com/olive-editor/olive", "version": "v0.0.0-20241205103416-7e0e94abf661", "purl": "", "published_at": "", "vulnerabilities": []}], "scorecard_score": null, "scorecard_checks": [{"name": "Code-Review", "documentation": {"shortDescription": "Determines if the project requires human code review before pull requests (aka merge requests) are merged.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#code-review"}, "score": 0, "reason": "Found 1/30 approved changesets -- score normalized to 0", "details": []}, {"name": "Maintained", "documentation": {"shortDescription": "Determines if the project is \"actively maintained\".", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#maintained"}, "score": 0, "reason": "0 commit(s) and 0 issue activity found in the last 90 days -- score normalized to 0", "details": []}, {"name": "Packaging", "documentation": {"shortDescription": "Determines if the project is published as a package that others can easily download, install, easily update, and uninstall.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#packaging"}, "score": -1, "reason": "packaging workflow not detected", "details": ["Warn: no GitHub/GitLab publishing workflow detected."]}, {"name": "Dangerous-Workflow", "documentation": {"shortDescription": "Determines if the project's GitHub Action workflows avoid dangerous patterns.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#dangerous-workflow"}, "score": 10, "reason": "no dangerous workflow patterns detected", "details": []}, {"name": "Token-Permissions", "documentation": {"shortDescription": "Determines if the project's workflows follow the principle of least privilege.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#token-permissions"}, "score": 0, "reason": "detected GitHub workflow tokens with excessive permissions", "details": ["Warn: no topLevel permission defined: .github/workflows/ci.yml:1", "Info: no jobLevel write permissions found"]}, {"name": "CII-Best-Practices", "documentation": {"shortDescription": "Determines if the project has an OpenSSF (formerly CII) Best Practices Badge.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#cii-best-practices"}, "score": 0, "reason": "no effort to earn an OpenSSF best practices badge detected", "details": []}, {"name": "Binary-Artifacts", "documentation": {"shortDescription": "Determines if the project has generated executable (binary) artifacts in the source repository.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#binary-artifacts"}, "score": 10, "reason": "no binaries found in the repo", "details": []}, {"name": "Security-Policy", "documentation": {"shortDescription": "Determines if the project has published a security policy.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#security-policy"}, "score": 0, "reason": "security policy file not detected", "details": ["Warn: no security policy file detected", "Warn: no security file to analyze", "Warn: no security file to analyze", "Warn: no security file to analyze"]}, {"name": "License", "documentation": {"shortDescription": "Determines if the project has defined a license.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#license"}, "score": 10, "reason": "license file detected", "details": ["Info: project has a license file: LICENSE:0", "Info: FSF or OSI recognized license: GNU General Public License v3.0: LICENSE:0"]}, {"name": "Fuzzing", "documentation": {"shortDescription": "Determines if the project uses fuzzing.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#fuzzing"}, "score": 0, "reason": "project is not fuzzed", "details": ["Warn: no fuzzer integrations found"]}, {"name": "Signed-Releases", "documentation": {"shortDescription": "Determines if the project cryptographically signs release artifacts.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#signed-releases"}, "score": 0, "reason": "Project has not signed or included provenance with any releases.", "details": ["Warn: release artifact 0.2.0-nightly not signed: https://api.github.com/repos/olive-editor/olive/releases/189128642", "Warn: release artifact 0.1.0 not signed: https://api.github.com/repos/olive-editor/olive/releases/17112433", "Warn: release artifact 0.2.0-nightly does not have provenance: https://api.github.com/repos/olive-editor/olive/releases/189128642", "Warn: release artifact 0.1.0 does not have provenance: https://api.github.com/repos/olive-editor/olive/releases/17112433"]}, {"name": "Branch-Protection", "documentation": {"shortDescription": "Determines if the default and release branches are protected with GitHub's branch protection settings.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#branch-protection"}, "score": -1, "reason": "internal error: error during branchesHandler.setup: internal error: some github tokens can't read classic branch protection rules: https://github.com/ossf/scorecard-action/blob/main/docs/authentication/fine-grained-auth-token.md", "details": []}, {"name": "SAST", "documentation": {"shortDescription": "Determines if the project uses static code analysis.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#sast"}, "score": 0, "reason": "SAST tool is not run on all commits -- score normalized to 0", "details": ["Warn: 0 commits out of 2 are checked with a SAST tool"]}, {"name": "Pinned-Dependencies", "documentation": {"shortDescription": "Determines if the project has declared and pinned the dependencies of its build process.", "url": "https://github.com/ossf/scorecard/blob/d1fab88f54636ff366076edfc5c239f97b3c8e66/docs/checks.md#pinned-dependencies"}, "score": 0, "reason": "dependency not pinned by hash detected -- score normalized to 0", "details": ["Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:151: update your workflow using https://app.stepsecurity.io/secureworkflow/olive-editor/olive/ci.yml/master?enable=pin", "Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:194: update your workflow using https://app.stepsecurity.io/secureworkflow/olive-editor/olive/ci.yml/master?enable=pin", "Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:201: update your workflow using https://app.stepsecurity.io/secureworkflow/olive-editor/olive/ci.yml/master?enable=pin", "Warn: third-party GitHubAction not pinned by hash: .github/workflows/ci.yml:220: update your workflow using https://app.stepsecurity.io/secureworkflow/olive-editor/olive/ci.yml/master?enable=pin", "Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:316: update your workflow using https://app.stepsecurity.io/secureworkflow/olive-editor/olive/ci.yml/master?enable=pin", "Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:322: update your workflow using https://app.stepsecurity.io/secureworkflow/olive-editor/olive/ci.yml/master?enable=pin", "Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:358: update your workflow using https://app.stepsecurity.io/secureworkflow/olive-editor/olive/ci.yml/master?enable=pin", "Warn: GitHub-owned GitHubAction not pinned by hash: .github/workflows/ci.yml:506: update your workflow using https://app.stepsecurity.io/secureworkflow/olive-editor/olive/ci.yml/master?enable=pin", "Warn: containerImage not pinned by hash: docker/ci-common/Dockerfile:14: pin your Docker image by updating aswftesting/ci-package-clang:2 to aswftesting/ci-package-clang:2@sha256:703238c916ae467e405462b6f0760cfdfcb4320d6e40f41ec5c4f6b385d4ce08", "Warn: containerImage not pinned by hash: docker/ci-common/Dockerfile:15: pin your Docker image by updating aswftesting/ci-package-ninja:2 to aswftesting/ci-package-ninja:2@sha256:2d5d2f3842f6d57b1cae0d093c7433f714b6f6cd8e318634c8b17cd6f041aae5", "Warn: containerImage not pinned by hash: docker/ci-common/Dockerfile:17: pin your Docker image by updating centos:7 to centos:7@sha256:be65f488b7764ad3638f236b7b515b3678369a5124c47b8d32916d6487418ea4", "Warn: containerImage not pinned by hash: docker/ci-crashpad/Dockerfile:10: pin your Docker image by updating olivevideoeditor/ci-common:2 to olivevideoeditor/ci-common:2@sha256:b7a74dad452b20201d25a78db76b5b60947b04723c3ba3cb717bec27338916d3", "Warn: containerImage not pinned by hash: docker/ci-ffmpeg/Dockerfile:26: pin your Docker image by updating olivevideoeditor/ci-common:2 to olivevideoeditor/ci-common:2@sha256:b7a74dad452b20201d25a78db76b5b60947b04723c3ba3cb717bec27338916d3", "Warn: containerImage not pinned by hash: docker/ci-ocio/Dockerfile:17: pin your Docker image by updating olivevideoeditor/ci-common:2 to olivevideoeditor/ci-common:2@sha256:b7a74dad452b20201d25a78db76b5b60947b04723c3ba3cb717bec27338916d3", "Warn: containerImage not pinned by hash: docker/ci-oiio/Dockerfile:15: pin your Docker image by updating aswftesting/ci-package-boost:2022 to aswftesting/ci-package-boost:2022@sha256:2c2995b5f3387d1361fbbc2a8efeff0f0c6c4ea98dce87f67e840fa66eb22812", "Warn: containerImage not pinned by hash: docker/ci-oiio/Dockerfile:16: pin your Docker image by updating aswftesting/ci-package-openexr:2022 to aswftesting/ci-package-openexr:2022@sha256:e2966356ba79b98295ba3d263584c177db03453c3794307a8d0080b7aa0f55ef", "Warn: containerImage not pinned by hash: docker/ci-oiio/Dockerfile:17: pin your Docker image by updating aswftesting/ci-package-imath:2022 to aswftesting/ci-package-imath:2022@sha256:1903aa24b64599064ebfae8256061bf09215b3076cef8e410bc81c7c1d63287b", "Warn: containerImage not pinned by hash: docker/ci-oiio/Dockerfile:19: pin your Docker image by updating olivevideoeditor/ci-common:2 to olivevideoeditor/ci-common:2@sha256:b7a74dad452b20201d25a78db76b5b60947b04723c3ba3cb717bec27338916d3", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:20: pin your Docker image by updating aswftesting/ci-package-qt:2022 to aswftesting/ci-package-qt:2022@sha256:91cb8517130f54a5edeb08f91eac0f059f14975764468126f942cacbaa0d72fb", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:21: pin your Docker image by updating aswftesting/ci-package-python:2022 to aswftesting/ci-package-python:2022@sha256:faa433b3022674f6ca8469ec82b3fa5bed72f4625df07cbabc4f3ec36b335302", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:22: pin your Docker image by updating aswftesting/ci-package-boost:2022 to aswftesting/ci-package-boost:2022@sha256:2c2995b5f3387d1361fbbc2a8efeff0f0c6c4ea98dce87f67e840fa66eb22812", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:23: pin your Docker image by updating aswftesting/ci-package-imath:2022 to aswftesting/ci-package-imath:2022@sha256:1903aa24b64599064ebfae8256061bf09215b3076cef8e410bc81c7c1d63287b", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:24: pin your Docker image by updating aswftesting/ci-package-openexr:2022 to aswftesting/ci-package-openexr:2022@sha256:e2966356ba79b98295ba3d263584c177db03453c3794307a8d0080b7aa0f55ef", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:28: pin your Docker image by updating aswftesting/ci-package-oiio:2022 to aswftesting/ci-package-oiio:2022@sha256:6620671132c6d04c12826307c421ffa9b7a4c60ca7ac78f896dbc26955701385", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:29: pin your Docker image by updating aswftesting/ci-package-openvdb:2022 to aswftesting/ci-package-openvdb:2022@sha256:6a6b4a910c95b1e213fc4ca70c2e4a7e02b9545505a9c8fd5c9f99ef2a2783a0", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:30: pin your Docker image by updating aswftesting/ci-package-blosc:2022 to aswftesting/ci-package-blosc:2022@sha256:ec6239d5b7ec16eb321704e093ae49209e52a04bd2177832a5f33c27f9e6837e", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:31: pin your Docker image by updating aswftesting/ci-package-tbb:2022 to aswftesting/ci-package-tbb:2022@sha256:20dd27111320fb97297c0ca4edbf1a5e5a52db5e3526c82c418dd4bf613bfdbc", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:34: pin your Docker image by updating olivevideoeditor/ci-package-ocio:2022-2.1.1 to olivevideoeditor/ci-package-ocio:2022-2.1.1@sha256:57fb1267285bba6fe9e1131cdc74f553ccaf00a81d06187a1c72e54d989e7108", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:35: pin your Docker image by updating olivevideoeditor/ci-package-ffmpeg:5.0 to olivevideoeditor/ci-package-ffmpeg:5.0@sha256:4690033242c47633fa4339eb46e9c1258f23c2a36b54d90b3d0ca60008842628", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:36: pin your Docker image by updating olivevideoeditor/ci-package-crashpad:latest to olivevideoeditor/ci-package-crashpad:latest@sha256:bf48c3a86cdf465a7af726089e2a1d3a14344220a01c481539b237d10da5b34e", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:37: pin your Docker image by updating olivevideoeditor/ci-package-otio:0.14.1 to olivevideoeditor/ci-package-otio:0.14.1@sha256:1c596eb69c4688474d277408081fd74721c1e3fcf056fd170469779fa4dfc807", "Warn: containerImage not pinned by hash: docker/ci-olive/Dockerfile:39: pin your Docker image by updating olivevideoeditor/ci-common:2 to olivevideoeditor/ci-common:2@sha256:b7a74dad452b20201d25a78db76b5b60947b04723c3ba3cb717bec27338916d3", "Warn: containerImage not pinned by hash: docker/ci-otio/Dockerfile:19: pin your Docker image by updating olivevideoeditor/ci-common:2 to olivevideoeditor/ci-common:2@sha256:b7a74dad452b20201d25a78db76b5b60947b04723c3ba3cb717bec27338916d3", "Warn: pipCommand not pinned by hash: .github/workflows/ci.yml:83", "Warn: pipCommand not pinned by hash: .github/workflows/ci.yml:246", "Warn: pipCommand not pinned by hash: .github/workflows/ci.yml:393", "Info:   0 out of   5 GitHub-owned GitHubAction dependencies pinned", "Info:   0 out of   3 third-party GitHubAction dependencies pinned", "Info:   0 out of  25 containerImage dependencies pinned", "Info:   0 out of   3 pipCommand dependencies pinned"]}], "known_vulnerability_count": 0, "provenance": [{"source": "GitHub REST API", "url": "https://github.com/olive-editor/olive", "retrieved_at": "2026-10-08T13:22:28.484172+00:00"}, {"source": "deps.dev API", "url": "https://deps.dev/", "retrieved_at": "2026-10-08T13:22:28.484172+00:00"}, {"source": "OSV API", "url": "https://osv.dev/", "retrieved_at": "2026-10-08T13:22:28.484172+00:00"}], "retrieved_at": "2026-10-08T13:22:28.484172+00:00", "rank_score": 0, "rank_reasons": [], "warnings": ["Aucune taille d’archive de version récente n’a pu être confirmée."], "adaptation": {"state": "unknown", "label": "Compatibilité à vérifier", "summary": "Les métadonnées publiques ne suffisent pas à certifier la compatibilité avec votre équipement.", "factors": ["Une activité récente est visible dans les métadonnées du dépôt.", "RAM, espace installé et débit minimal ne sont pas publiés dans les métadonnées interrogées."], "checks": []}, "exclusion_reason": "", "quality_doubt": "", "description_issue": ""}