🚀 TG4G
DirectoryDev Toolslowendinsight.dev
🔧 Dev Tools 📍 HQ: Unknown
L

lowendinsight.dev

Overall Rating
★★★⯨☆ 7.0/10
China Access
★★★ China direct-connect friendly
Quick Check
Data source
ai_crawl · Last updated 2026-06-08

⚡ Score breakdown

5-dim weighted · /10
Performance25% 7.0
Value20% 7.0
China access20% 10.0
Reputation20% 6.0
Support15% 6.5

Dimension scores are derived from public data and fields; weighted into the composite. Reference only.

Editorial Highlights

Provides API and OSS risk analysis; useful for developers.

In-Depth Review TG4G Review ·2026-06-08 · For reference only

What It Is

LowEndInsight is a developer tool for analyzing open source software supply chain risk. The page positions it as “Open source supply chain risk and agentic analysis.” It can analyze public Git repositories, as well as SBOMs in CycloneDX or SPDX JSON format, to identify contributor risk, commit activity, dependency/supply-chain risk, and the proportion of commits generated by bots or AI agents.

Core Features and API

Its core metrics include contributor count, bus factor, functional contributors, commit currency, large recent commit risk, SBOM risk, and more. These are useful for assessing whether a project is healthy, whether it is overly dependent on a small number of contributors, and whether recent commits are unusually large. One distinctive feature is Agentic Classification: repositories are classified as human, mixed, or agent based on the share of commits from automated or AI contributors, where human is below 0.3 and agent is above 0.7. On the API side, it provides /v1/analyze, /v1/analyze/{uuid}, /v1/analyze/sbom, plus cache import/export and statistics endpoints. Swagger and an OpenAPI Spec are available, and the curl examples are clear, making it relatively easy to get started.

Open Source, Self-Hosting, and Ecosystem

The page lists Source Code, BSD 3-Clause License, and v0.9.4, indicating a fairly open source project. Its cache export and import endpoints are explicitly designed for air-gapped deployment, showing some consideration for isolated environments or pre-warming caches on internal networks. In terms of ecosystem, the main text only clearly mentions public Git repositories, GitHub token-related capabilities, and CycloneDX/SPDX SBOM support; there is no visible mention of SDKs, CI/CD plugins, IDE plugins, or security platform integrations.

Pricing and Documentation

The captured text does not provide pricing, free tier, authentication method, rate limits, or commercial support information, so it is not possible to judge the cost of its hosted service. Documentation quality is decent at the API onboarding level: Quick Start, endpoint lists, risk metrics, risk levels, Swagger, and OpenAPI are all present. However, deeper documentation on deployment steps, risk model explanations, false-positive handling, permission configuration, and similar topics still appears limited.

Pros, Cons, and Who It’s For

Its strengths are that it is open source, focused in its metrics, has a simple API, and supports both repositories and SBOMs. Its weaknesses are the limited information on integrations and commercial support; the examples mainly revolve around GitHub, and some checks also depend on a GitHub token. It is suitable for DevSecOps, open source governance, and security review teams to use in dependency intake, project health assessment, and SBOM risk inventory workflows.

Access from China

The page does not provide information on China access, mirrors, payment, or compliance, so real-world connectivity is unknown. If access is unstable, alternatives worth considering include OpenSSF Scorecard, Socket.dev, Snyk, Sonatype, Mend, or GitHub Dependabot.

⚠ This review is compiled from public sources and does not constitute a purchase recommendation. Verify all facts on the vendor's official site. Verify on lowendinsight.dev official site.

About this entry

lowendinsight.dev is an Unknown Dev Tools provider. TG4G tracks its product information, an overall rating of 7.0/10, and a China-accessibility score of China direct-connect friendly. Click "Visit Official Site" to reach lowendinsight.dev directly.

Get Started

Price not disclosed
Visit lowendinsight.dev official site →
External link · prices subject to vendor site

Frequently Asked Questions

What is lowendinsight.dev?
lowendinsight.dev is a Unknown-based Dev Tools provider. Provides API and OSS risk analysis; useful for developers.
Is lowendinsight.dev good? Is it worth it?
lowendinsight.dev scores 7.0/10 on TG4G — a solid rating, based in 未知. See the in-depth review below for pros, cons and China accessibility.
Is lowendinsight.dev usable in China?
lowendinsight.dev offers good direct-connect performance in mainland China and works in most regions without a proxy. The provider is headquartered in Unknown and primarily serves overseas markets.
How do I sign up for lowendinsight.dev?
Visit the lowendinsight.dev official site to complete sign-up. Registration typically requires an email (Gmail/Outlook recommended) and a payment method. Most overseas services accept credit card / PayPal / crypto. See the "Visit Official Site" button on this page for the direct link.

Browse Other Categories

View the full directory →