21 results found Sort:

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
Created 2013-07-16
5,682 commits to master branch, last one 2 days ago
:mag: ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet project https://nl...
Created 2015-07-01
11,326 commits to develop branch, last one 16 days ago
166
711
other
32
A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby
Created 2017-11-11
270 commits to master branch, last one 29 days ago
163
596
apache-2.0
16
Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission t...
Created 2019-12-30
1,436 commits to master branch, last one 4 days ago
201
548
apache-2.0
22
A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sponsored by NLnet https://nlnet.nl/project/vulnerabilitydatabase...
Created 2017-05-19
2,549 commits to main branch, last one 3 days ago
🎁 wraps all package managers with a unifying CLI
Created 2016-08-17
4,333 commits to main branch, last one 15 days ago
64
320
apache-2.0
15
CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.
Created 2020-10-22
416 commits to main branch, last one 28 days ago
Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects
Created 2017-06-04
759 commits to master branch, last one 23 days ago
69
259
apache-2.0
13
CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments
Created 2018-11-15
678 commits to main branch, last one 7 days ago
90
193
apache-2.0
13
Creates CycloneDX Software Bill of Materials (SBOM) from .NET Projects
Created 2018-10-02
947 commits to master branch, last one 14 days ago
Creates CycloneDX Software Bill of Materials (SBOM) from Gradle projects
Created 2018-05-30
642 commits to master branch, last one 2 days ago
91
121
apache-2.0
14
ScanCode.io is a server to script and automate software composition analysis pipelines with ScanPipe pipelines. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabas...
Created 2020-09-10
1,063 commits to main branch, last one 3 days ago
Creates CycloneDX Software Bill of Materials (SBOM) from Rust (Cargo) projects
Created 2019-05-21
1,205 commits to main branch, last one 8 days ago
14
98
apache-2.0
6
Utility that provides an API platform for validating, querying and managing BOM data
Created 2023-01-10
291 commits to main branch, last one about a month ago
CycloneDX SBOM Model and Utils for Creating and Validating BOMs
Created 2018-05-30
1,404 commits to master branch, last one 11 hours ago
Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ , the Google Summer of Code, nexB and other generous sponsors...
Created 2017-11-14
286 commits to main branch, last one about a month ago
Python implementation of OWASP CycloneDX
Created 2021-08-27
722 commits to main branch, last one 6 days ago
Go implementation of the package url spec
Created 2017-11-16
73 commits to master branch, last one 6 days ago
Create CycloneDX Software Bill of Materials (SBOM) from PHP Composer projects
Created 2019-08-09
632 commits to master branch, last one 13 days ago
Tools to create and expose a database of purls (Package URLs). This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ and nexB for https://www.aboutcode.org/ Chat i...
Created 2022-10-30
1,357 commits to main branch, last one a day ago
Automate open source license compliance and ensure software supply chain integrity
Created 2023-12-07
166 commits to main branch, last one a day ago