orcwg / cra-hub
Everything you ever wanted to know about the CRA and its implementation
☆61Updated this week
Alternatives and similar repositories for cra-hub:
Users that are interested in cra-hub are comparing it to the libraries listed below
- ☆19Updated 4 months ago
- free and open source software license compatibility tool.☆47Updated last month
- Machine-readable specification for the attestation of security-relevant data.☆57Updated this week
- Sbommage is an interactive terminal frontend for viewing Software Bill of Materials (SBOM) files in various formats.☆25Updated last month
- This tool compares two Software Bill of Materials (SBOMs) and reports the differences.☆31Updated 5 months ago
- Automating Compliance Tooling Project☆21Updated 3 years ago
- container-inspector is a suite of analysis utilities and command line tools for Docker container images, their layers and how these relat…☆37Updated 2 weeks ago
- Automate open source license compliance and ensure software supply chain integrity☆30Updated last week
- The model for the information captured in SPDX version 3 standard.☆79Updated this week
- Home of the ORC WG☆12Updated last week
- This is the Mercedes-Benz FOSS Manifesto - our path to embrace Open Source☆79Updated 4 months ago
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆86Updated this week
- ☆33Updated 11 months ago
- The Great Multi-Factor Authentication (MFA) Distribution Project of the Open Source Security Foundation (OpenSSF). We work to distribute …☆54Updated 3 years ago
- This repository stores meetings minutes for the SPDX project☆29Updated this week
- A field guide to open source project archetypes☆96Updated last year
- Community Specification 1.0☆67Updated 2 years ago
- Collating an overview of the open source software supply chain landscape -- and synthesizing that survey in a hopefully-useful way.☆33Updated last year
- Umbrella Repository Service for TUF☆45Updated this week
- Report on quality of SBOM contents☆17Updated 3 months ago
- A GitHub Action for sigstore-python☆50Updated last month
- Risk Working Group Repository☆26Updated last month
- OSS License Open Data☆12Updated 5 years ago
- This repo is for tracking activities that we work on during TODO Group Work Days☆15Updated 2 years ago
- This repo contains license and copyright analysis results of open source packages. It further contains other license compliance relevant …☆45Updated this week
- SPDX Merge tool☆41Updated 3 weeks ago
- OSPO Landscape☆34Updated 3 weeks ago
- OSADL license compatibility matrix as a CSV☆15Updated 3 months ago
- A configuration file for in-solidarity-bot that flags some of the terms in the NIST Technical Series Publications Author Instructions and…☆67Updated 10 months ago
- ☆19Updated 10 months ago