CycloneDX / gh-python-generate-sbomLinks
GitHub action to generate a CycloneDX SBOM for Python
☆14Updated 11 months ago
Alternatives and similar repositories for gh-python-generate-sbom
Users that are interested in gh-python-generate-sbom are comparing it to the libraries listed below
Sorting:
- Advisory database for Python packages published on pypi.org☆312Updated last week
- A BOM repository server for distributing CycloneDX BOMs☆86Updated 5 months ago
- CVSS2/3/4 library with interactive calculator for Python 2 and Python 3☆114Updated 4 months ago
- Utility that provides an API platform for validating, querying and managing BOM data☆124Updated 3 months ago
- CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments☆347Updated this week
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆111Updated 3 weeks ago
- Open Source Vulnerability schema.☆220Updated last week
- Functionality and DataModels of OWASP CycloneDX for Python☆97Updated this week
- Sharing software supply chain security open source projects☆53Updated 3 years ago
- A tool to generate a SBOM (Software Bill of Materials) for an installed Python module☆37Updated 2 months ago
- Check your Python environments for vulnerable Open Source packages with OSS Index or Sonatype Nexus Lifecycle.☆132Updated 6 months ago
- Audit python packages for known vulnerabilities☆33Updated 3 years ago
- Python Faker provider for security related data☆40Updated 3 months ago
- A repository with examples of CycloneDX BOMs (SBOM, SaaSBOM, OBOM, VEX, etc)☆212Updated 2 months ago
- Produce an Open Source Vulnerability JSON file based on information in an SPDX document☆65Updated last year
- Parse and compare all the package versions and all the ranges. From debian, npm, pypi, ruby and more. Process all the version range specs…☆38Updated last month
- Enrich SBOMs with data from third party services☆204Updated last week
- Optimize the utilization of GHAS licenses in an enterprise (or organization)☆15Updated 2 months ago
- github action to run the bandit security linter☆15Updated last month
- Software Component Verification Standard (SCVS)☆152Updated 8 months ago
- Publishes BOMs to Dependency-Track from GitHub Actions☆57Updated last year
- Validate the SPDX SBOM against NTIA, CISA, and other minimum element requirements.☆75Updated last week
- Generate a score for your sbom to understand if it will actually be useful.☆234Updated last year
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆65Updated last year
- sbomasm: The Complete SBOM Management Toolkit☆94Updated last week
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated 2 weeks ago
- The SCANOSS SBOM Workbench graphical user interface to scan and audit your source code.☆59Updated this week
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆107Updated this week
- Securing Alice's, Bob's and Carl's software supply chain using in-toto☆101Updated 3 weeks ago
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.2, purl, and vers…☆133Updated last week