fossas / fossa-cliLinks
Fast, portable and reliable dependency analysis for any codebase. Supports license & vulnerability scanning for large monoliths. Language-agnostic; integrates with 20+ build systems.
☆1,404Updated this week
Alternatives and similar repositories for fossa-cli
Users that are interested in fossa-cli are comparing it to the libraries listed below
Sorting:
- Python reference implementation of The Update Framework (TUF)☆1,668Updated last week
- A suite of tools to automate software compliance checks.☆1,777Updated this week
- High-performance extensible build system for reproducible multi-language builds.☆2,521Updated 2 weeks ago
- The Buildkite Agent is an open-source toolkit written in Go for securely running build jobs on any device or network☆856Updated this week
- A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby☆821Updated last week
- Notary is a project that allows anyone to have trust over arbitrary collections of data☆3,279Updated 11 months ago
- Tern is a software composition analysis tool and Python library that generates a Software Bill of Materials for container images and Dock…☆990Updated last year
- SQL interface to git repositories, written in Go. https://docs.sourced.tech/gitbase☆2,079Updated last year
- 🏆Open Source Security Foundation (OpenSSF) Best Practices Badge (formerly Core Infrastructure Initiative (CII) Best Practices Badge)☆1,273Updated last week
- Repolinter, The Open Source Repository Linter☆446Updated last month
- Reduce maintainer fatigue by automating GitHub☆816Updated last year
- Knox is a secret management service☆1,248Updated last month
- Artifact Metadata API☆1,541Updated 2 weeks ago
- CUE has moved to https://github.com/cue-lang/cue☆3,075Updated 4 years ago
- Contributor License Agreement assistant (CLA assistant)☆1,418Updated last year
- sso, aka S.S.Octopus, aka octoboi, is a single sign-on solution for securing internal services☆3,114Updated 2 months ago
- The Open Source Discovery Service☆1,127Updated 2 weeks ago
- Supply-chain Levels for Software Artifacts☆1,692Updated 2 weeks ago
- A fast partial replacement for the codemod tool☆1,761Updated 3 weeks ago
- LGTM is a simple pull request approval system [ARCHIVE]☆988Updated 7 years ago
- Kubernetes application deployments for restricted, regulated, or remote environments☆1,080Updated 2 years ago
- A distributed, fault-tolerant pipeline for observability data☆1,743Updated last year
- GitHub App that enforces the Developer Certificate of Origin (DCO) on Pull Requests☆320Updated 2 months ago
- Gives criticality score for an open source project☆1,380Updated 3 months ago
- OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reductio…☆403Updated last week
- 📅 The web's go-to resource for Calendar Versioning info.☆534Updated last year
- A code rewrite tool for structural search and replace that supports ~every language.☆2,508Updated 3 months ago
- Pull Requests for GitHub repository settings☆991Updated last week
- A service that analyzes docker images and scans for vulnerabilities☆1,587Updated 2 years ago
- a modern crypto messaging format