jfrog / build-info-goLinks
build-info-go is a Go library and a CLI, which allows generating build-info for a source code project.
☆77Updated this week
Alternatives and similar repositories for build-info-go
Users that are interested in build-info-go are comparing it to the libraries listed below
Sorting:
- Froggit-Go is a universal Go library, allowing to perform actions on VCS providers.☆48Updated 2 weeks ago
- Go module to generate and transform VEX documents☆49Updated last week
- Decentralized Package Network☆303Updated 2 years ago
- ☆38Updated last week
- A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.☆141Updated last month
- Go implementation of the package url spec☆63Updated 8 months ago
- go library for processing container images and simulating a squash filesystem☆97Updated this week
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆66Updated this week
- 🐸 Scans your Git repository with JFrog Xray for security vulnerabilities. 🤖☆343Updated this week
- Integrates Spiffe and Vault to have secretless authentication☆93Updated 2 weeks ago
- Sigstore user stories☆30Updated 2 years ago
- Example goreleaser + github actions config with keyless signing, SBOM generation, and attestations☆58Updated 2 weeks ago
- A collection of go utilities☆19Updated 2 months ago
- ☆54Updated last week
- Darkfiles finds orphaned files in container images and makes them to bad deeds☆42Updated 2 years ago
- SPDX SBOM Landscape☆16Updated 2 years ago
- A CLI used to work with the Wolfi OSS project☆66Updated last week
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆104Updated this week
- foundation modules for scanning container packages and reporting vulnerabilities☆147Updated last week
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆65Updated last month
- Prototype in-toto attestation verifier based on ITE-10 and ITE-11 layouts☆17Updated last month
- ☆23Updated 2 years ago
- A tool to create, transform and attest VEX metadata☆163Updated last week
- Trivy plugin for OCI referrers☆23Updated last year
- Go client library for OWASP Dependency-Track☆28Updated last month
- TUF repository for Sigstore trust root☆109Updated this week
- Kubernetes Admission Webhook to enforce pulling of Docker images from the private registry.☆46Updated 4 years ago
- Collection of Go packages to work with SPDX files☆152Updated 3 weeks ago
- Go implementation of witness☆41Updated this week
- A TUF repository and signing tool☆42Updated this week