Wind-River / meta-wr-sbom
A CLI tool for generating a Software Bill of Materials (SBOM) from Yocto Project.
☆17Updated last week
Alternatives and similar repositories for meta-wr-sbom:
Users that are interested in meta-wr-sbom are comparing it to the libraries listed below
- Utility that converts SBOM documents from CycloneDX to SPDX☆29Updated last year
- A Yocto meta-layer for generating CycloneDX SBOMs and automatically uploading them to Dependency Track.☆19Updated 8 months ago
- The model for the information captured in SPDX version 3 standard.☆73Updated this week
- Examples of SPDX files for software combinations☆125Updated last week
- A place to systematically store software bill of materials (SBOM) documents.☆44Updated last year
- Audit C/C++ projects (make, cmake, command line, etc.)☆26Updated 3 years ago
- A web based tool for working with CycloneDX BOMs☆33Updated 5 months ago
- Find & pull public SBOMs☆16Updated 5 months ago
- Check SPDX SBOM for NTIA minimum elements☆58Updated this week
- OverC + cubes distribution layer☆16Updated 2 years ago
- Layer for static code analysis and security hardening☆95Updated 2 weeks ago
- SCANOSS Mining tool☆22Updated last month
- SPDX Command Line Tools using the Spdx-Java-Library☆64Updated last month
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆57Updated 9 months ago
- List of SBOM Generation Tools☆20Updated 2 months ago
- Software Quality Management Tool☆18Updated this week
- PURL to CPE Relationship mapping project.☆82Updated this week
- Lockheed Martin developed utility to generate CycloneDX SBOMs for Linux distributions☆41Updated 8 months ago
- Vulnerability management tool that provides Yocto SBOM generation and CVE Analysis of target images.☆36Updated 7 months ago
- (This design path has been abandoned.) Containers, Toolchains and other plumbing for CROPS [DEPRECATED]☆14Updated 6 years ago
- The SCANOSS python package providing a simple, easy to consume library for interacting with SCANOSS APIs/Engine.☆29Updated this week
- This project is an implementation of the TCG TPM 2.0 specification. It is based on the TPM specification Parts 3 and 4 source code donate…☆28Updated last month
- OSS License Open Data☆12Updated 5 years ago
- OpenSSF Endusers Working Group☆28Updated 10 months ago
- ☆13Updated 3 months ago
- This repo contains license and copyright analysis results of open source packages. It further contains other license compliance relevant …☆39Updated this week
- Plain text version of the OSADL Open Source Policy Template: The Basis for License Compliance☆19Updated 2 years ago
- ☆100Updated 4 months ago
- Produce an Open Source Vulnerability JSON file based on information in an SPDX document☆62Updated 8 months ago
- Example projects showing how to generate code from state machines using the Sinelabore code generator.☆13Updated last month