jfrog / build-info-goLinks
build-info-go is a Go library and a CLI, which allows generating build-info for a source code project.
☆77Updated this week
Alternatives and similar repositories for build-info-go
Users that are interested in build-info-go are comparing it to the libraries listed below
Sorting:
- Froggit-Go is a universal Go library, allowing to perform actions on VCS providers.☆51Updated last month
- Decentralized Package Network☆301Updated 2 years ago
- go library for processing container images and simulating a squash filesystem☆101Updated this week
- ☆38Updated last week
- foundation modules for scanning container packages and reporting vulnerabilities☆149Updated this week
- A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.☆142Updated this week
- Go implementation of the package url spec☆67Updated last month
- 🐸 Scans your Git repository with JFrog Xray for security vulnerabilities. 🤖☆353Updated this week
- Go module to generate and transform VEX documents☆52Updated 3 weeks ago
- ☆58Updated this week
- Anchore Kubernetes Inventory can poll Kubernetes Cluster API(s) to tell Anchore Enterprise which Containers and Images are currently in-u…☆67Updated last week
- Collection of Go packages to work with SPDX files☆157Updated this week
- Example goreleaser + github actions config with keyless signing, SBOM generation, and attestations☆58Updated last week
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆109Updated this week
- A collection of go utilities☆19Updated last week
- Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore☆65Updated last week
- Darkfiles finds orphaned files in container images and makes them to bad deeds☆42Updated 2 years ago
- SPDX SBOM Landscape☆16Updated 2 years ago
- Administrative tooling for Falco☆121Updated 2 weeks ago
- All go clients for JFrog products☆271Updated this week
- CLOMonitor is a tool that periodically checks open source projects repositories to verify they meet certain project health best practices☆144Updated last week
- ☆30Updated this week
- A CLI used to work with the Wolfi OSS project☆67Updated 3 weeks ago
- Enhancing AWS Security: JFrog's Seamless Integration and the Power of AssumeRole☆24Updated last week
- Plugin for Docker CLI to support SBOM creation using Syft☆161Updated last month
- Sigstore user stories☆30Updated 2 years ago
- The Central Helm Repository for the Community☆41Updated 4 years ago
- A tool to create, transform and attest VEX metadata☆170Updated this week
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆70Updated 3 weeks ago
- ahab is a tool to check for vulnerabilities in your apt, apk, or yum powered operating systems, powered by Sonatype OSS Index.☆68Updated last year