OpenSSF Scorecard - Security health metrics for Open Source
☆5,532Jun 8, 2026Updated last week
Alternatives and similar repositories for scorecard
Users that are interested in scorecard are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- GitHub App to set and enforce security policies☆1,432Jun 14, 2026Updated last week
- Official GitHub Action for OpenSSF Scorecard.☆386Updated this week
- Supply-chain Levels for Software Artifacts☆1,882Jun 8, 2026Updated last week
- CLI tool and library for generating a Software Bill of Materials from container images and filesystems☆9,115Updated this week
- Code signing and transparency for containers and binaries☆6,047Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- A vulnerability scanner for container images and filesystems☆12,406Jun 12, 2026Updated last week
- GUAC aggregates software security metadata into a high fidelity graph database.☆1,506Updated this week
- Vulnerability scanner written in Go which uses the data provided by https://osv.dev☆10,509Jun 14, 2026Updated last week
- Lightweight static analysis for many languages. Find bug variants with patterns that look like source code.☆15,562Updated this week
- Software Supply Chain Transparency Log☆1,164Updated this week
- Open Source Package Analysis☆894Jun 12, 2026Updated last week
- Language-agnostic SLSA provenance generation for Github Actions☆577Mar 29, 2026Updated 2 months ago
- The Best Practices for OSS Developers working group is dedicated to raising awareness and education of secure code best practices for ope…☆1,039Updated this week
- Open source vulnerability DB and triage service.☆2,754Updated this week
- Deploy to Railway using AI coding agents - Free Credits Offer • AdUse Claude Code, Codex, OpenCode, and more. Autonomous software development now has the infrastructure to match with Railway.
- Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clusters. It includes risk analysis, security…☆11,480Jun 14, 2026Updated last week
- Cloud Native Runtime Security☆9,052Updated this week
- Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supp…