A tool to generate a SBOM (Software Bill of Materials) for an installed Python module
☆38Mar 13, 2026Updated 2 months ago
Alternatives and similar repositories for sbom4python
Users that are interested in sbom4python are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- The Keep It Simple Software Bill of Material☆11Jan 31, 2022Updated 4 years ago
- Binary builds for dep-scan - The Dependency Scanner☆10Apr 1, 2024Updated 2 years ago
- A specification including, problem statement, use cases, requirements, and architectural constituents for a Transparency Service in suppo…☆14Feb 17, 2023Updated 3 years ago
- Library to ingest and generate SBOMs☆44May 21, 2026Updated 2 weeks ago
- Linear algebra utilities for Python☆13Oct 28, 2025Updated 7 months ago
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Create a dependency graph of the components within a SBOM☆20Aug 17, 2025Updated 9 months ago
- Report on quality of SBOM contents☆27Dec 18, 2024Updated last year
- Fetches security vulnerabilities and creates pip-constraints based on them.☆12Jan 27, 2025Updated last year
- Repository for on-going work as part of the SBOM for AI Tiger Team effort.☆43Jul 28, 2025Updated 10 months ago
- Authenticated independently verifiable agent delegation.☆33Dec 17, 2025Updated 5 months ago
- a mostly correct pip requirements parsing library☆20Sep 2, 2024Updated last year
- Kubernetes TPM Device Plugin☆13Jun 15, 2023Updated 2 years ago
- apt2sbom python package generates SPDX or CycloneDX files from Ubuntu APT and Python packaging information☆25Feb 4, 2022Updated 4 years ago
- ☆11Nov 11, 2022Updated 3 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- The `ansible-sign` utility for signing and verifying Ansible project directory contents.☆16Updated this week
- sigstore helm-charts and build scripts opinionated for running on OCP and RHEL☆12Mar 3, 2025Updated last year
- Script to help maintain a wheelhouse folder on a cloud storage.☆33Aug 4, 2020Updated 5 years ago
- Inspect Python code and PyPI package manifests. Resolve Python dependencies.☆24May 18, 2026Updated 3 weeks ago
- ☆13Apr 24, 2023Updated 3 years ago
- A standard API specification for exchanging supply chain artifacts and intelligence☆108May 20, 2026Updated 2 weeks ago
- Flake8 Plugin that Forbids Implicit str/bytes Literal Concatenations☆20Updated this week
- GTK and HTML viewers for mirage-profile trace files☆21Feb 8, 2023Updated 3 years ago
- These are the MirageOS slide decks, written as a self-hosting unikernel☆13Nov 3, 2017Updated 8 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments☆378Updated this week
- A software suite for enhancing software supply chain transparency☆33Updated this week
- A curated list of SBOM (Software Bill Of Materials) related tools, frameworks, blogs, podcasts, and articles☆585May 27, 2026Updated last week
- Deep Learning Inference in 35 Lines of Python☆22Mar 27, 2015Updated 11 years ago
- Go stemmers generated by the Snowball project☆24Sep 6, 2020Updated 5 years ago
- Stuff to make standing up sigstore (esp. for testing) easier for e2e/integration testing.☆81Updated this week
- Statically analyze sources and extract information about called or exported library functions in Python applications☆21Apr 25, 2024Updated 2 years ago
- Python bindings for TrustyAI's explainability library☆20Mar 23, 2026Updated 2 months ago
- Software Supply Chain Attribute Integrity (SCAI) Demos and CLI tools☆19Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Vendy is a tool for vendoring third-party packages into your project.☆19Nov 28, 2023Updated 2 years ago
- Read rmp archive files☆31May 6, 2026Updated last month
- Gordon is status check Github app to enforce and validate about.yaml file specifications in a repository during pull requests to drive co…☆20Feb 4, 2025Updated last year
- Linux integrity monitoring for CentOS/RHEL☆13May 13, 2020Updated 6 years ago
- WIP Handbook for MirageOS☆14Mar 15, 2018Updated 8 years ago
- Semgrep Pro Rules to ensure code using LLMs is following best practices☆72Mar 25, 2026Updated 2 months ago
- Security-Oriented Analysis of Application Programs☆13Dec 14, 2018Updated 7 years ago