QMSTR / qmstrLinks
QMSTR compliance tool
☆32Updated 3 years ago
Alternatives and similar repositories for qmstr
Users that are interested in qmstr are comparing it to the libraries listed below
Sorting:
- container-inspector is a suite of analysis utilities and command line tools for Docker container images, their layers and how these relat…☆37Updated 3 months ago
- SPDX Tools☆137Updated 2 years ago
- OSPO Landscape☆38Updated 2 months ago
- Automating Compliance Tooling Project☆21Updated 3 years ago
- This repo realizes the idea that OSS compliance activities will be less expensive by applying OSS principles☆88Updated last month
- Darkfiles finds orphaned files in container images and makes them to bad deeds☆42Updated 2 years ago
- Examples of SPDX files for software combinations☆133Updated 3 weeks ago
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆95Updated this week
- A small application which needs a better name and collects oss-license metadata and combines it☆32Updated 2 months ago
- Publications done by Double Open.☆16Updated 5 years ago
- A java api and command line tool for scanning, reporting and fixing a git repository's InnerSource Readiness based on a supplied specific…☆20Updated last year
- A specification for signing methods and formats used by Secure Systems Lab projects.☆81Updated 10 months ago
- Machine-readable specification for the attestation of security-relevant data.☆59Updated last week
- A light-weight app to audit and inventory large codebases for open source license compliance.☆66Updated this week
- Prospector permits automated collection of a wide range of metrics of open source projects useful in evaluating the project.☆66Updated 6 years ago
- Proof-of-concept SLSA provenance generator for GitHub Actions☆100Updated 2 years ago
- Doc, wiki and organizational content for ClearlyDefined☆97Updated 2 months ago
- SBOM Edit - Conditional edits and merging of SBOMs☆73Updated last week
- ☆62Updated 11 months ago
- A Jenkins plugin to track steps and create in-toto link metadata☆11Updated 3 weeks ago
- Atarashi scans for license statements in open source software, focusing on text statistics. Designed to work stand-alone and with FOSSolo…☆29Updated this week
- Technical Advisory Council☆126Updated 2 weeks ago
- Example CLI project to demo API architecture and protobom library☆21Updated last month
- SPDX SBOM Landscape☆15Updated last year
- This repo is for tracking activities that we work on during TODO Group Work Days☆15Updated 2 years ago
- Prototype in-toto attestation verifier based on ITE-10 and ITE-11 layouts☆16Updated 3 weeks ago
- opengovernance.dev☆41Updated 5 years ago
- SW360 Antenna project☆22Updated 4 years ago
- OSS License Open Data☆12Updated 6 years ago
- Utility that provides an API and CLI to identify licenses and legal terms☆50Updated last month