42 results found Sort:

585
9.1k
apache-2.0
77
A vulnerability scanner for container images and filesystems
Created 2020-05-26
1,540 commits to main branch, last one 3 days ago
587
6.4k
apache-2.0
59
CLI tool and library for generating a Software Bill of Materials from container images and filesystems
Created 2020-05-07
2,523 commits to main branch, last one 2 days ago
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
Created 2013-07-16
5,682 commits to master branch, last one 2 days ago
:mag: ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet project https://nl...
Created 2015-07-01
11,326 commits to develop branch, last one 16 days ago
314
1.6k
apache-2.0
40
A suite of tools to automate software compliance checks.
Created 2017-10-19
16,975 commits to main branch, last one 13 hours ago
116
1.1k
apache-2.0
154
OpenSCA is an open source software supply chain security solution that supports the detection of open source dependencies, vulnerabilities and license compliance with a widely noticed accuracy by the ...
Created 2021-12-30
990 commits to master branch, last one 2 months ago
OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container ima...
Created 2020-01-28
390 commits to master branch, last one 17 days ago
166
711
other
32
A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby
Created 2017-11-11
270 commits to master branch, last one 29 days ago
The Panthera(P.)uncia of Cybersecurity - Official CLI utility for Subdomain Center & Exploit Observer.
Created 2023-09-10
39 commits to master branch, last one 27 days ago
163
596
apache-2.0
16
Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission t...
Created 2019-12-30
1,436 commits to master branch, last one 4 days ago
45
533
mpl-2.0
10
Scans Software Bill of Materials (SBOMs) for security vulnerabilities
Created 2022-07-08
90 commits to main branch, last one about a month ago
🎁 wraps all package managers with a unifying CLI
Created 2016-08-17
4,333 commits to main branch, last one 15 days ago
30
378
apache-2.0
11
Chainloop is an Open Source evidence store for your Software Supply Chain attestations, SBOMs, VEX, SARIF, CSAF files, QA reports, and more.
Created 2023-03-06
1,141 commits to main branch, last one a day ago
61
372
apache-2.0
26
OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and V...
Created 2017-05-29
1,042 commits to master branch, last one 9 days ago
BLint is a Binary Linter to check the security properties, and capabilities in your executables. Since v2, blint is also an SBOM generator for binaries.
Created 2023-01-21
245 commits to main branch, last one 5 days ago
64
320
apache-2.0
15
CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.
Created 2020-10-22
416 commits to main branch, last one 28 days ago
Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects
Created 2017-06-04
759 commits to master branch, last one 23 days ago
69
259
apache-2.0
13
CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments
Created 2018-11-15
678 commits to main branch, last one 7 days ago
90
193
apache-2.0
13
Creates CycloneDX Software Bill of Materials (SBOM) from .NET Projects
Created 2018-10-02
947 commits to master branch, last one 14 days ago
20
191
apache-2.0
7
SBOM quality score - Quality metrics for your sboms
Created 2023-01-31
570 commits to main branch, last one 8 days ago
66
189
cc0-1.0
15
A repository with examples of CycloneDX BOMs (SBOM, SaaSBOM, OBOM, VEX, etc)
Created 2020-07-31
123 commits to master branch, last one 17 days ago
Creates CycloneDX Software Bill of Materials (SBOM) from Gradle projects
Created 2018-05-30
642 commits to master branch, last one 2 days ago
21
143
apache-2.0
11
Enrich SBOMs with data from third party services
Created 2023-04-19
146 commits to main branch, last one 3 days ago
23
137
unknown
8
A suite of utilities to help with software supply chain challenges on nix targets
Created 2022-12-08
271 commits to main branch, last one 10 days ago
creates CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects
Created 2017-06-04
516 commits to master branch, last one about a month ago
91
121
apache-2.0
14
ScanCode.io is a server to script and automate software composition analysis pipelines with ScanPipe pipelines. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabas...
Created 2020-09-10
1,063 commits to main branch, last one 3 days ago
Creates CycloneDX Software Bill of Materials (SBOM) from Rust (Cargo) projects
Created 2019-05-21
1,205 commits to main branch, last one 8 days ago
14
98
apache-2.0
6
Utility that provides an API platform for validating, querying and managing BOM data
Created 2023-01-10
291 commits to main branch, last one about a month ago
CycloneDX SBOM Model and Utils for Creating and Validating BOMs
Created 2018-05-30
1,404 commits to master branch, last one 11 hours ago
Create CycloneDX Software Bill of Materials (SBOM) from Node.js NPM projects.
Created 2022-07-23
902 commits to main branch, last one 3 days ago