Repository navigation

#

cyclonedx

anchore/syft

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

Go
7482
1 天前

🔍 ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase, the Google Summer of Code, Azure credits, nexB and others generous sponsors!

Python
2355
2 小时前

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.

Python
1155
7 天前

OpenSCA is an open source software supply chain security solution that supports the detection of open source dependencies, vulnerabilities and license compliance with a widely noticed accuracy by the community.

Go
1099
8 天前

A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby

Python
857
14 分钟前

Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server

JavaScript
760
3 小时前

Panthera(P.)uncia - Official CLI utility for Osprey Vision, Subdomain Center & Exploit Observer.

Python
655
2 个月前

Scans Software Bill of Materials (SBOMs) for security vulnerabilities

Go
578
5 个月前

Evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more

Go
482
1 天前

OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and VEX

XSLT
412
5 天前

BLint is a Binary Linter to check the security properties, and capabilities in your executables. Since v2, blint is also an SBOM generator for binaries.

Python
397
5 天前

CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.

C#
392
5 天前

Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects

Java
328
1 个月前

CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments

Python
318
14 小时前

Creates CycloneDX Software Bill of Materials (SBOM) from .NET Projects

C#
228
8 天前