CycloneDX / cyclonedx-node-yarn
Create CycloneDX Software Bill of Materials (SBOM) from Node.js Yarn projects.
☆21Updated this week
Alternatives and similar repositories for cyclonedx-node-yarn:
Users that are interested in cyclonedx-node-yarn are comparing it to the libraries listed below
- Core functionality of OWASP CycloneDX for JavaScript (Node.js or WebBrowser) written in TypeScript.☆15Updated last week
- Create CycloneDX Software Bill of Materials (SBOM) from Node.js NPM projects.☆77Updated this week
- creates CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects☆124Updated 2 months ago
- Enrich SBOMs with data from third party services☆151Updated last week
- Utility that provides an API and CLI to identify licenses and legal terms☆43Updated 7 months ago
- CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.☆325Updated last month
- Utility that provides an API platform for validating, querying and managing BOM data☆98Updated 2 months ago
- Generate a score for your sbom to understand if it will actually be useful.☆224Updated 5 months ago
- [GitHub] A Command Line ToolKit for GitHub Security Alert.☆26Updated 2 months ago
- Generate CycloneDX Software Bill of Materials (SBOM) from webpack bundles at compile time.☆26Updated this week
- SBOM Assembler - A tool to edit SBOM or assemble multiple sboms into a single sbom.☆61Updated 2 weeks ago
- GitHub action to generate a CycloneDX SBOM for Node.js☆21Updated last week
- Pin your GitHub actions to a specific hash☆80Updated last week
- SPDX Merge tool☆39Updated 4 months ago
- OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reductio…☆376Updated last week
- Scans Software Bill of Materials (SBOMs) for security vulnerabilities☆536Updated last week
- Incubating project for decoupling responsibilities from Dependency-Track's monolithic API server into separate, scalable services.☆65Updated this week
- Improve the security of your API by detecting common vulnerabilities as defined by OWASP and enforced with Spectral.☆72Updated 2 months ago
- JavaScript code and supporting files for working with the 'Static Analysis Results Interchange Format' (SARIF, see https://github.com/oas…☆27Updated 7 months ago
- A BOM repository server for distributing CycloneDX BOMs☆75Updated 10 months ago
- AsyncAPI schema versions☆57Updated 2 months ago
- SBOM quality score - Quality metrics for your sboms☆192Updated this week
- A Github Action to ensure that actions are pinned to full length commit SHAs☆38Updated last week
- ☆18Updated last month
- ☆15Updated this week
- A tool to create, transform and attest VEX metadata☆126Updated this week
- Feed parsing for language package manager updates☆76Updated last month
- A pre-commit tool designed for monorepos.☆104Updated 2 weeks ago
- PURL to CPE Relationship mapping project.☆82Updated this week
- OpenVEX Specification☆139Updated 6 months ago