Repository navigation

#

sbom-generator

scanner detecting the use of JavaScript libraries with known vulnerabilities. Can also generate an SBOM of the libraries it finds.

JavaScript
3924
8 天前

The SBOM tool is a highly scalable and enterprise ready tool to create SPDX 2.2 compatible SBOMs for any variety of artifacts.

C#
1856
4 天前

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/

TypeScript
1456
1 年前

A curated list of SBOM (Software Bill Of Materials) related tools, frameworks, blogs, podcasts, and articles

537
3 个月前

CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.

C#
392
5 天前

A tool to automatically build a dependency graph and Software Bill of Materials (SBOM) for packages and arbitrary source code repositories.

Python
367
8 个月前

Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects

Java
328
1 个月前

CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments

Python
318
14 小时前

Creates CycloneDX Software Bill of Materials (SBOM) from .NET Projects

C#
228
8 天前

Creates CycloneDX Software Bill of Materials (SBOM) from Gradle projects

Java
195
1 天前

Creates CycloneDX Software Bill of Materials (SBOM) from Go modules

Go
159
5 小时前

Creates CycloneDX Software Bill of Materials (SBOM) from Rust (Cargo) projects

Rust
138
2 个月前

creates CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects

131
4 天前

Create CycloneDX Software Bill of Materials (SBOM) from Node.js NPM projects.

JavaScript
94
1 天前
Rust
90
3 个月前

Compage - Low-Code Framework to develop Rest API, gRPC, dRPC, GraphQL, WebAssembly, microservices, FaaS, Temporal workloads, IoT and edge services, K8s controllers, K8s CRDs, K8s custom APIs, K8s Operators, K8s hooks, etc. with minimal coding and by automatically applying best practice methods like software supply chain security measures, SBOM, openAPI, cloudevents, etc. Auto generate code after defining requirements in UI as diagram.

Go
84
1 年前

Analyze any snippet, file, or repository to detect possible security flaws such as secret in code, open source vulnerability, code security, vulnerability, insecure infrastructure as code, and potential legal issues with open source licenses.

TypeScript
78
1 年前

sbomasm: The Complete SBOM Management Toolkit

Go
74
5 天前