Repository navigation

#

cyclonedx

anchore/syft

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

Go
6844
3 天前

🔍 ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase, the Google Summer of Code, Azure credits, nexB and others generous sponsors!

Python
2264
2 天前

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.

Python
1094
12 小时前

OpenSCA is an open source software supply chain security solution that supports the detection of open source dependencies, vulnerabilities and license compliance with a widely noticed accuracy by the community.

Go
1065
7 天前

A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby

761
4 天前

Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server. GPT: https://chatgpt.com/g/g-673bfeb4037481919be8a2cd1bf868d2-cdxgen

JavaScript
675
2 天前

Panthera(P.)uncia - Official CLI utility for Osprey Vision, Subdomain Center & Exploit Observer.

Python
644
11 天前

Scans Software Bill of Materials (SBOMs) for security vulnerabilities

Go
561
20 天前

Evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more

Go
424
4 天前

OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and VEX

XSLT
395
3 天前

BLint is a Binary Linter to check the security properties, and capabilities in your executables. Since v2, blint is also an SBOM generator for binaries.

Python
360
10 天前

CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.

C#
351
5 个月前

Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects

Java
320
2 天前

CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments

Python
276
6 天前

Creates CycloneDX Software Bill of Materials (SBOM) from .NET Projects

C#
214
1 个月前