openlawlibrary / tafLinks
The Archive Framework
☆20Updated this week
Alternatives and similar repositories for taf
Users that are interested in taf are comparing it to the libraries listed below
Sorting:
- Cryptographic and general-purpose routines for Secure Systems Lab projects at NYU☆52Updated last week
- Everything you ever wanted to know about the CRA and its implementation☆149Updated this week
- A Python library to parse, validate and create SPDX documents.☆233Updated 3 weeks ago
- ☆19Updated last year
- A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and disc…☆141Updated 2 years ago
- Risk Working Group Repository☆27Updated 10 months ago
- Utility library to parse, normalize and compare License expressions for Python using a boolean logic engine. For expressions using SPDX …☆72Updated 6 months ago
- Doc, wiki and organizational content for ClearlyDefined☆106Updated last week
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆86Updated 2 months ago
- Helping allocate resources to secure the critical open source projects we all depend on.☆383Updated 9 months ago
- A Python library and command line interface for CVE Services.☆71Updated last week
- Source Code Transparency☆11Updated 2 years ago
- The model for the information captured in SPDX version 3 standard.☆97Updated 2 weeks ago
- Tools to create and deploy a database of software packages metadata, origin, dependencies, and license keyed by PURLs (Package URLs). Sup…☆58Updated this week
- A Sigstore client written in Python☆310Updated this week
- A TUF repository and signing tool☆43Updated last week
- OpenSSF Working Group on Securing Software Repositories☆127Updated last month
- The System Package Data Exchange (SPDX) specification in Markdown and HTML formats.☆354Updated this week
- REUSE recommendations, tutorials, FAQ and specification☆18Updated last year
- Umbrella Repository Service for TUF☆59Updated last week
- A runbook for the PSF, for TUF key setup and initial signing operations to bootstrap signing for PyPI.☆16Updated 3 years ago
- Automatically assess and score software repositories for supply chain risk.☆120Updated 2 months ago
- This repository stores meetings minutes for the SPDX project☆37Updated last week
- Machine-readable specification for the attestation of security-relevant data.☆72Updated last week
- free and open source software license compatibility tool.☆50Updated 10 months ago
- 2017 - 2018 Certificate Policy development and drafting for Federal Public Trust Device PKI.☆44Updated last year
- WEBCAT is an architectural framework for providing blocking code signing and verification, integrity and transparency checks for browser-…☆59Updated last week
- A GitHub Action for sigstore-python☆65Updated this week
- PURL to CPE Relationship mapping project.☆110Updated last week
- Feed parsing for language package manager updates☆81Updated last year