Explore Projects

Discover 13 open source projects

Active filters (1):
Search: sbomร—
Clear all

Showing 1-13 of 13 projects

aquasecurity/trivy

Security scanner for vulnerabilities, misconfigurations, secrets, and SBOM in containers, Kubernetes, code repos, and clouds

32.8K
Active
Go
Penetration Testing
Infrastructure as Code
Go
#security-scanner#vulnerability-detection#iac-scanning

anchore/syft

A CLI tool and library for generating SBOMs (Software Bill of Materials) from container images and filesystems.

8.4K
Active
Go
CLI Tools
Containerization
Go
#containers#sbom#oci

aboutcode-org/scancode-toolkit

Detects licenses, copyrights, and dependencies in code to help developers discover open-source packages.

2.5K
Active
Python
Python
#authentication#licensing#dependency-graph

microsoft/sbom-tool

A highly scalable and enterprise-ready tool to create SPDX 2.2 compatible SBOMs for any variety of artifacts.

2.0K
Active
C#
CLI Tools
API Frameworks
C#
#sbom#sbom-generator#spdx

oss-review-toolkit/ort

A suite of tools to automate software compliance checks for open-source projects.

2.0K
Active
Kotlin
CLI Tools
Documentation
Kotlin
#compliance#copyright#license-management

zarf-dev/zarf

The Airgap Native Packager Manager for Kubernetes, a platform for building and managing cloud-native applications.

1.8K
Active
Go
Containerization
Infrastructure as Code
Kubernetes
#cloud-native#airgap#gitops

ossf/cve-bin-tool

A Python tool to scan binaries for known vulnerabilities and generate software bill of materials (SBOM).

1.6K
Active
Python
#cve#cvss#security

lunasec-io/lunasec

LunaSec is a dependency security scanner that automatically notifies you about vulnerabilities in your codebase.

1.5K
Archived
TypeScript
Security Tools
Build Tools
TypeScript
#compliance#continuous-delivery#cve-scanning

openclarity/openclarity

Open source platform to enhance security and observability of cloud native applications and infrastructure

1.5K
Active
Go
Security Research
Containerization
#cloud-security#vulnerability-scanning#kubernetes-security

guacsec/guac

GUAC aggregates software security metadata into a high fidelity graph database.

1.4K
Active
Go
Security Research
CLI Tools
Go
#software-supply-chain-security#vulnerability-management#sbom

owasp-dep-scan/dep-scan

A security audit tool for project dependencies, supporting local repos and containers, with a focus on compliance and supply chain security.

1.2K
Active
Python
Security
Containerization
#security-audit#supply-chain-security#dependency-analysis

XmirrorSecurity/OpenSCA-cli

An open-source software supply chain security solution for detecting dependencies, vulnerabilities, and license compliance.

1.1K
Active
Go
Security Research
API Frameworks
#software-supply-chain-security#software-composition-analysis#vulnerability-detection

tern-tools/tern

Tern is a software composition analysis tool that generates a Software Bill of Materials for container images and Dockerfiles.

1.0K
Archived
Python
CLI Tools
Containerization
#compliance#containers#dependencies

Stay in the loop

Get weekly updates on trending AI coding tools and projects.