CycloneDX / gh-python-generate-sbomLinks
GitHub action to generate a CycloneDX SBOM for Python
☆14Updated 6 months ago
Alternatives and similar repositories for gh-python-generate-sbom
Users that are interested in gh-python-generate-sbom are comparing it to the libraries listed below
Sorting:
- A BOM repository server for distributing CycloneDX BOMs☆77Updated 2 weeks ago
- Utility that provides an API platform for validating, querying and managing BOM data☆116Updated this week
- Advisory database for Python packages published on pypi.org☆296Updated this week
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆95Updated last week
- Check your Python environments for vulnerable Open Source packages with OSS Index or Sonatype Nexus Lifecycle.☆123Updated last month
- Publishes BOMs to Dependency-Track from GitHub Actions☆54Updated 9 months ago
- Open Source Vulnerability schema.☆204Updated this week
- Python implementation of OWASP CycloneDX☆84Updated this week
- Machine-readable specification for the attestation of security-relevant data.☆59Updated last week
- SPDX Merge tool☆45Updated 2 months ago
- creates CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects☆129Updated last month
- CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments☆301Updated last week
- Generate a score for your sbom to understand if it will actually be useful.☆230Updated 11 months ago
- A repository with examples of CycloneDX BOMs (SBOM, SaaSBOM, OBOM, VEX, etc)☆197Updated 3 months ago
- CVSS2/3/4 library with interactive calculator for Python 2 and Python 3☆103Updated last week
- ☆50Updated this week
- Audit python packages for known vulnerabilities☆33Updated 3 years ago
- Enrich SBOMs with data from third party services☆178Updated this week
- A place to systematically store software bill of materials (SBOM) documents.☆46Updated 2 years ago
- Examples of SPDX files for software combinations☆133Updated 3 weeks ago
- PURL to CPE Relationship mapping project.☆91Updated this week
- GitHub Secret Scanning Auto Remediator (GSSAR)☆45Updated last month
- Produce an Open Source Vulnerability JSON file based on information in an SPDX document☆64Updated last year
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆99Updated last week
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆75Updated 3 weeks ago
- ☆100Updated 9 months ago
- Check SPDX SBOM for NTIA minimum elements☆64Updated last week
- DTrackAuditor is the python script to faciliate usage of DependencyTrack in the CI.☆11Updated 2 months ago
- Software Component Verification Standard (SCVS)☆148Updated 3 months ago
- Generate SBOMs with gh CLI☆189Updated last month