openlawlibrary / tafLinks
The Archive Framework
☆18Updated last month
Alternatives and similar repositories for taf
Users that are interested in taf are comparing it to the libraries listed below
Sorting:
- ☆19Updated 11 months ago
- Everything you ever wanted to know about the CRA and its implementation☆138Updated last week
- Cryptographic and general-purpose routines for Secure Systems Lab projects at NYU☆52Updated last week
- A Python library to parse, validate and create SPDX documents.☆227Updated 3 months ago
- A Sigstore client written in Python☆296Updated this week
- A Python library and command line interface for CVE Services.☆69Updated 3 weeks ago
- Source Code Transparency☆11Updated 2 years ago
- The model for the information captured in SPDX version 3 standard.☆95Updated this week
- Doc, wiki and organizational content for ClearlyDefined☆103Updated this week
- A GitHub Action for sigstore-python☆61Updated last week
- QubesOS dom0 automation in Python☆12Updated 8 years ago
- This repository stores meetings minutes for the SPDX project☆34Updated last week
- OpenSSF Working Group on Securing Software Repositories☆122Updated last week
- A guide on coordinated vulnerability disclosure for open source projects. Includes templates for security policies (security.md) and disc…☆138Updated 2 years ago
- A runbook for the PSF, for TUF key setup and initial signing operations to bootstrap signing for PyPI.☆15Updated 3 years ago
- Umbrella Repository Service for TUF☆57Updated 2 weeks ago
- Automatically assess and score software repositories for supply chain risk.☆114Updated last week
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆79Updated last month
- Tools to create and expose a database of purls (Package URLs). This project is sponsored by NLnet project https://nlnet.nl/project/vulner…☆52Updated 2 weeks ago
- A TUF repository and signing tool☆42Updated this week
- The System Package Data Exchange (SPDX) specification in Markdown and HTML formats.☆343Updated this week
- Utility library to parse, normalize and compare License expressions for Python using a boolean logic engine. For expressions using SPDX …☆69Updated 3 months ago
- A library for building tools to determine if vulnerabilities are reachable in a code base.☆16Updated 2 months ago
- This is a repository of vulnerability advisories for projects in scope for the Python Software Foundation CVE Numbering Authority (CNA)☆37Updated 2 weeks ago
- An Architecture for Trustworthy Digital Supply Chain Transparency Services☆17Updated last week
- Supply Chain Query Tool☆13Updated 3 years ago
- free and open source software license compatibility tool.☆48Updated 6 months ago
- PURL to CPE Relationship mapping project.☆97Updated this week
- OASIS SARIF TC: Repository for development of the draft standard, where requests for modification should be made via Github Issues☆187Updated 3 weeks ago
- Machine-readable specification for the attestation of security-relevant data.☆63Updated last month