51 results found Sort:
- Filter by Primary Language:
- Python (14)
- Go (13)
- Rust (5)
- Java (4)
- HTML (3)
- C# (3)
- Kotlin (2)
- PHP (2)
- JavaScript (1)
- TypeScript (1)
- XSLT (1)
- +
CLI tool and library for generating a Software Bill of Materials from container images and filesystems
Created
2020-05-07
2,590 commits to main branch, last one a day ago
:mag: ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet project https://nl...
Created
2015-07-01
11,374 commits to develop branch, last one 12 days ago
A suite of tools to automate software compliance checks.
Created
2017-10-19
17,306 commits to main branch, last one a day ago
GUAC aggregates software security metadata into a high fidelity graph database.
Created
2022-06-10
1,834 commits to main branch, last one a day ago
OpenSCA is an open source software supply chain security solution that supports the detection of open source dependencies, vulnerabilities and license compliance with a widely noticed accuracy by the ...
Created
2021-12-30
999 commits to master branch, last one 5 days ago
Tern is a software composition analysis tool and Python library that generates a Software Bill of Materials for container images and Dockerfiles. The SBOM that Tern generates will give you a layer-by-...
Created
2017-11-27
1,102 commits to main branch, last one about a year ago
FOSSology is an open source license compliance software system and toolkit. As a toolkit you can run license, copyright and export control scans from the command line. As a system, a database and we...
Created
2014-01-13
9,917 commits to master branch, last one 5 days ago
A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby
Created
2017-11-11
272 commits to master branch, last one 4 days ago
📜 Cargo plugin to generate list of all licenses for a crate 🦀
Created
2019-11-01
203 commits to main branch, last one 2 months ago
Scans Software Bill of Materials (SBOMs) for security vulnerabilities
Created
2022-07-08
90 commits to main branch, last one 2 months ago
Various data formats for the SPDX License List including RDFa, HTML, Text, and JSON
Created
2016-04-15
692 commits to main branch, last one 27 days ago
🎁 wraps all package managers with a unifying CLI
Created
2016-08-17
4,340 commits to main branch, last one 24 days ago
reuse is a tool for compliance with the REUSE recommendations.
Created
2019-04-12
2,549 commits to main branch, last one 18 days ago
Evidence store for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, etc. With Chainloop, Security and Compliance teams can define policies, what evicence to receive and where to...
Created
2023-03-06
1,205 commits to main branch, last one a day ago
OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and V...
Created
2017-05-29
1,059 commits to master branch, last one 12 days ago
A utility to generate SPDX-compliant Bill of Materials manifests
Created
2021-11-19
1,160 commits to main branch, last one 2 days ago
CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.
Created
2020-10-22
416 commits to main branch, last one 2 months ago
Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects
Created
2017-06-04
759 commits to master branch, last one 2 months ago
The System Package Data Exchange (SPDX) specification in Markdown and HTML formats.
Created
2017-05-10
1,072 commits to develop branch, last one 8 days ago
CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments
Created
2018-11-15
689 commits to main branch, last one 7 days ago
Reliable project licenses detector.
Created
2018-01-30
169 commits to master branch, last one 4 years ago
A Python library to parse, validate and create SPDX documents.
Created
2015-03-23
1,387 commits to main branch, last one 4 months ago
Creates CycloneDX Software Bill of Materials (SBOM) from .NET Projects
Created
2018-10-02
948 commits to master branch, last one 6 days ago
write licenses to stdout
Created
2019-09-19
98 commits to master branch, last one 2 years ago
SBOM quality score - Quality metrics for your sboms
Created
2023-01-31
622 commits to main branch, last one 19 days ago
Creates CycloneDX Software Bill of Materials (SBOM) from Gradle projects
Created
2018-05-30
650 commits to master branch, last one 17 days ago
SPDX Tools
Created
2015-03-23
1,015 commits to master branch, last one 2 years ago
licensechecker (lc) a command line application which scans directories and identifies what software license things are under producing reports as either SPDX, CSV, JSON, XLSX or CLI Tabular output. Du...
Created
2018-01-22
395 commits to master branch, last one 7 months ago
ScanCode.io is a server to script and automate software composition analysis pipelines with ScanPipe pipelines. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabas...
Created
2020-09-10
1,101 commits to main branch, last one 5 days ago
Creates CycloneDX Software Bill of Materials (SBOM) from Rust (Cargo) projects
Created
2019-05-21
1,209 commits to main branch, last one 28 days ago