QMSTR / qmstrLinks
QMSTR compliance tool
☆32Updated 3 years ago
Alternatives and similar repositories for qmstr
Users that are interested in qmstr are comparing it to the libraries listed below
Sorting:
- Automating Compliance Tooling Project☆22Updated 3 years ago
- SPDX Tools☆143Updated 3 months ago
- container-inspector is a suite of analysis utilities and command line tools for Docker container images, their layers and how these relat…☆37Updated 10 months ago
- OSPO Landscape☆41Updated 3 weeks ago
- Examples of SPDX files for software combinations☆140Updated last month
- Prospector permits automated collection of a wide range of metrics of open source projects useful in evaluating the project.☆66Updated 6 years ago
- This repo realizes the idea that OSS compliance activities will be less expensive by applying OSS principles☆92Updated 3 weeks ago
- A light-weight app to audit and inventory large codebases for open source license compliance.☆72Updated this week
- Hermeto is a CLI tool that prefetches project dependencies for hermetic container builds.☆29Updated this week
- ☆71Updated last month
- A small application which needs a better name and collects oss-license metadata and combines it☆32Updated last month
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆111Updated last month
- Example CLI project to demo API architecture and protobom library☆23Updated 3 weeks ago
- free and open source software license compatibility tool.☆50Updated 9 months ago
- The Disclosure-CLI provides an easy way to access the public api of the FOSS Disclosure Portal. It is the recommended tool for external s…☆18Updated 2 weeks ago
- SPDX 2.0 document creation and storage☆16Updated 3 years ago
- sbomasm: The Complete SBOM Management Toolkit☆98Updated this week
- A java api and command line tool for scanning, reporting and fixing a git repository's InnerSource Readiness based on a supplied specific…☆20Updated 2 years ago
- A specification for signing methods and formats used by Secure Systems Lab projects.☆90Updated 2 months ago
- Machine-readable specification for the attestation of security-relevant data.☆69Updated last week
- Doc, wiki and organizational content for ClearlyDefined☆105Updated last month
- CLOMonitor is a tool that periodically checks open source projects repositories to verify they meet certain project health best practices☆144Updated last week
- Open Source Programs (OSPO) Survey☆75Updated 4 months ago
- Enrich SBOMs with data from third party services☆211Updated 3 weeks ago
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆41Updated last month
- OpenVEX Specification☆163Updated 7 months ago
- The System Package Data Exchange (SPDX) specification in Markdown and HTML formats.☆351Updated this week
- Panels from GrimoireLab dashboards☆38Updated 3 months ago
- This repo is for tracking activities that we work on during TODO Group Work Days☆15Updated 3 years ago
- SPDX Merge tool☆48Updated 8 months ago