Go module to generate and transform VEX documents
☆71Sep 21, 2026Updated this week
Alternatives and similar repositories for go-vex
Users that are interested in go-vex are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- A tool to create, transform and attest VEX metadata☆213Updated this week
- OpenVEX Specification☆191Sep 9, 2026Updated 2 weeks ago
- Reports on the licenses used by a Go package and its dependencies.☆11Jul 24, 2024Updated 2 years ago
- A SBOM-centric security scanner.☆26Updated this week
- A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.☆151Sep 10, 2026Updated 2 weeks ago
- Wordpress hosting with auto-scaling - Free Trial Offer • AdFully Managed hosting for WordPress and WooCommerce businesses that need reliable, auto-scalable performance. Cloudways SafeUpdates now available.
- Interfaces and implementations for building Kubernetes releases.☆20Updated this week
- native go library for installation and management of apk packages☆31Jun 5, 2024Updated 2 years ago
- Detects when some calls can be replaced by methods from the testing package☆34Sep 1, 2026Updated 3 weeks ago
- ☆24Updated this week
- Automating Compliance Tooling Project☆24Jan 28, 2022Updated 4 years ago
- Collection of Go packages to work with SPDX files☆171Aug 24, 2026Updated last month
- About standalone, Kubernetes-native Software Bill of Materials (SBOM) visualization and governance platform☆53Updated this week
- 🔴🟡🟢 The Amazing Multipurpose Policy Engine (and L)☆54Updated this week
- Resources to help vulnerability scanners☆14Updated this week
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- a CLI tool for generating logs and metrics from eBPF telemetry, producing flamegraphs and actionable observability outputs☆16Mar 28, 2025Updated last year
- Dynamic GitHub Actions from Wolfi packages☆45May 5, 2026Updated 4 months ago
- Helm mixin for Porter☆13Jul 1, 2021Updated 5 years ago
- Labeled vulnerability-package match pairs used as ground truth to evaluate vulnerability scanners☆14Updated this week
- A highly configurable build executor and observer designed to generate signed SLSA provenance attestations about build runs.☆74Updated this week
- How small can a Java application container image be☆21Feb 17, 2023Updated 3 years ago
- A utility to generate SPDX-compliant Bill of Materials manifests☆466Updated this week
- Restrict process execution and file access in Kubernetes Pods with Landlock☆17Updated this week
- 🔍 Rekor transparency log monitoring and alerting☆26Oct 2, 2023Updated 2 years ago
- AI Agents on DigitalOcean Gradient AI Platform • AdBuild production-ready AI agents using customizable tools or access multiple LLMs through a single endpoint. Create custom knowledge bases or connect external data.
- in-toto Attestation Framework☆375Sep 14, 2026Updated last week
- Suppress vulnerabilities applying Kubernetes context to scans☆36Updated this week
- Command line tool for diffing go module dependency changes between versions 📔☆33Sep 17, 2026Updated last week
- SLSA provenance using Nix and Github Actions☆19Sep 11, 2025Updated last year
- ☆166Updated this week
- A sweet little formatter for YAML☆34Sep 17, 2026Updated last week
- A universal SBOM representation in protocol buffers☆334Updated this week
- A kubectl plugin to run kubectl macro that wraps a set of kubectl calls into one command to be run many times.☆11Jun 28, 2021Updated 5 years ago
- A proof-of-concept for how the SLSA Source Track could be implemented.☆18Updated this week
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- A tool that takes two or more micro SBOMs and composes them into one distributable SBOM☆23Mar 23, 2023Updated 3 years ago
- Software Supply Chain Attribute Integrity (SCAI) Demos and CLI tools☆19Sep 2, 2026Updated 3 weeks ago
- Keyless Git signing with cosign!☆11May 12, 2022Updated 4 years ago
- A collection of Dagger modules powered by Dagger.☆17Aug 3, 2025Updated last year
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆131Updated this week
- Minimal container registry☆50Jul 22, 2026Updated 2 months ago
- Go implementation of witness☆52Sep 16, 2026Updated last week