Automatically assess and score software repositories for supply chain risk.
☆129Sep 15, 2026Updated this week
Alternatives and similar repositories for hipcheck
Users that are interested in hipcheck are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- Rust implementation of OmniBOR, reproducible identifiers & fine-grained build dependency tracking for software artifacts.☆30Jul 29, 2025Updated last year
- Reference GitHub Workflows for SBOM generation from the CISA SBOM Generation Reference Implementation Tiger Team☆34Feb 2, 2026Updated 7 months ago
- Library to ingest and generate VEX documents☆21Mar 9, 2026Updated 6 months ago
- Use your cookies from browsers in your curl, wget and httpie requests!☆21Jun 20, 2026Updated 3 months ago
- Machine-readable specification for the attestation of security-relevant data.☆81Sep 12, 2026Updated last week
- Managed hosting for WordPress and PHP on Cloudways • AdManaged hosting for WordPress, Magento, Laravel, or PHP apps, on multiple cloud providers. Deploy in minutes on Cloudways by DigitalOcean.
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆121Feb 28, 2026Updated 6 months ago
- The model for the information captured in SPDX version 3 standard.☆105Updated this week
- ☆10Jul 24, 2024Updated 2 years ago
- Website for OmniBOR, reproducible identifiers & fine-grained build dependency tracking for software artifacts.☆21Jan 27, 2025Updated last year
- About standalone, Kubernetes-native Software Bill of Materials (SBOM) visualization and governance platform☆51Updated this week
- GSA open source policy guidance repository with official policy found at☆14Oct 2, 2018Updated 7 years ago
- CLI tool to validate CVE v5 JSON records.☆16Jul 28, 2026Updated last month
- This is the OpenChain Telco Work Group☆20Updated this week
- Python library for getting metadata from source code hosting tools☆59Jan 26, 2026Updated 7 months ago
- Deploy open-source AI quickly and easily - Special Bonus Offer • AdRunpod Hub is built for open source. One-click deployment and autoscaling endpoints without provisioning your own infrastructure.
- A repo to conduct vulnerability enrichment.☆854Updated this week
- Study of research software in repositories. Contact: @karacolada☆13Aug 14, 2024Updated 2 years ago
- verify https assets with a public transparency log☆75Oct 28, 2021Updated 4 years ago
- A collection of resources to improve insight into your organization's open source contribution☆21Nov 27, 2024Updated last year
- Collating an overview of the open source software supply chain landscape -- and synthesizing that survey in a hopefully-useful way.☆35Apr 4, 2023Updated 3 years ago
- A comprehensive guide to open source software supply chain security☆16Aug 10, 2026Updated last month
- ☆34Aug 14, 2025Updated last year
- ☆87Aug 19, 2026Updated last month
- Generate a score for your sbom to understand if it will actually be useful.☆242Aug 13, 2024Updated 2 years ago
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- Format agnostic SBOM tooling☆156Nov 20, 2025Updated 10 months ago
- This project aims to standardize the representation and management of EOL and EOS product information across the industry.☆30Mar 4, 2024Updated 2 years ago
- SBOM Explorer - Discover and pull public SBOMs☆21May 23, 2025Updated last year
- Create SPDX documents automatically with CMake build info☆33May 2, 2021Updated 5 years ago
- Validate SPDX 2 and 3 SBOM against NTIA, CISA, and other minimum element requirements.☆91Sep 7, 2026Updated 2 weeks ago
- A work-in-progress code of conduct detector based off Licensee☆15Nov 28, 2022Updated 3 years ago
- Simplify OpenSSF Scorecard tracking in your organization with automated markdown and JSON reports, plus optional GitHub issue alerts☆50Jul 25, 2026Updated last month
- A standard API specification for exchanging supply chain artifacts and intelligence☆116Updated this week
- Collection of tools for analyzing open source packages.☆371Jul 31, 2026Updated last month
- Proton VPN Special Offer - Get 70% off • AdSpecial partner offer. Trusted by over 100 million users worldwide. Tested, Approved and Recommended by Experts.
- A metadata description standard for public software and policy repositories☆20Jan 8, 2019Updated 7 years ago
- SBOM Search - Context aware search in SBOM repositories☆32Sep 14, 2026Updated last week
- Proof of concept for CVE-2020-15257 in containerd.☆18Jan 12, 2021Updated 5 years ago
- DEPRECATED An ungodly union of GitHub and Figshare☆16Oct 21, 2013Updated 12 years ago
- Collect, curate, and communicate relevant security metrics for open source projects.☆63Mar 13, 2024Updated 2 years ago
- API client for libraries.io written in Go☆11Jun 7, 2017Updated 9 years ago
- Generate an SPDX Software Bill of Materials for Rust crates.☆20Aug 10, 2022Updated 4 years ago