CycloneDX / gh-python-generate-sbomLinks
GitHub action to generate a CycloneDX SBOM for Python
☆14Updated 11 months ago
Alternatives and similar repositories for gh-python-generate-sbom
Users that are interested in gh-python-generate-sbom are comparing it to the libraries listed below
Sorting:
- A BOM repository server for distributing CycloneDX BOMs☆86Updated 5 months ago
- Publishes BOMs to Dependency-Track from GitHub Actions☆57Updated last year
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆111Updated 2 weeks ago
- Open Source Vulnerability schema.☆217Updated last week
- sbomasm: The Complete SBOM Management Toolkit☆94Updated last week
- Check your Python environments for vulnerable Open Source packages with OSS Index or Sonatype Nexus Lifecycle.☆132Updated 6 months ago
- Utility that provides an API platform for validating, querying and managing BOM data☆124Updated 2 months ago
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆107Updated this week
- Advisory database for Python packages published on pypi.org☆312Updated this week
- creates CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects☆135Updated 3 weeks ago
- A repository with examples of CycloneDX BOMs (SBOM, SaaSBOM, OBOM, VEX, etc)☆211Updated 2 months ago
- Generate a score for your sbom to understand if it will actually be useful.☆234Updated last year
- CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments☆346Updated this week
- Functionality and DataModels of OWASP CycloneDX for Python☆96Updated this week
- Generate SBOMs with gh CLI☆196Updated 6 months ago
- Enrich SBOMs with data from third party services☆202Updated this week
- A small utility that keeps your Git repositories from leaking secrets, skipping hooks, or quietly drifting out of compliance. It’s design…☆32Updated last month
- Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.2, purl, and vers…☆132Updated last week
- GitHub Secret Scanning Auto Remediator (GSSAR)☆46Updated last week
- OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reductio…☆454Updated this week
- Examples of SPDX files for software combinations☆139Updated last month
- Python Faker provider for security related data☆40Updated 3 months ago
- Produce an Open Source Vulnerability JSON file based on information in an SPDX document☆65Updated last year
- SPDX Merge tool☆48Updated 7 months ago
- ☆102Updated last year
- CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.☆432Updated last week
- CVSS2/3/4 library with interactive calculator for Python 2 and Python 3☆114Updated 4 months ago
- Validate the SPDX SBOM against NTIA, CISA, and other minimum element requirements.☆75Updated this week
- ☆55Updated last week
- Securing Alice's, Bob's and Carl's software supply chain using in-toto☆101Updated 2 weeks ago