Do you use source control tools to manage your software development process? Source control was the very first item on Joel Spolsky's Joel Test for the quality of a development team back in 2000.
Black Duck Hub is a database and code-checking service. Its database, Black Duck KnowledgeBase, contains data on over 2 million open-source projects and 79,000+ known open-source vulnerabilities.