SPDX Merge tool
☆51May 18, 2026Updated 3 weeks ago
Alternatives and similar repositories for SPDXMerge
Users that are interested in SPDXMerge are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- GitHub action to produce a SBOM report from a given Black Duck project☆12Feb 5, 2026Updated 4 months ago
- The model for the information captured in SPDX version 3 standard.☆102Updated this week
- License Identifier☆15Mar 25, 2021Updated 5 years ago
- ☆20Updated this week
- This repo. is archived. The utility is now at: https://github.com/CycloneDX/sbom-utility☆60Apr 17, 2023Updated 3 years ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Security advisory data for Wolfi☆19Jan 7, 2026Updated 5 months ago
- Generate a score for your sbom to understand if it will actually be useful.☆243Aug 13, 2024Updated last year
- A universal SBOM representation in protocol buffers☆326May 22, 2026Updated 2 weeks ago
- Automating Compliance Tooling Project☆24Jan 28, 2022Updated 4 years ago
- Documents and tools powering the Wolfi OS community☆24Apr 22, 2026Updated last month
- List of SBOM Generation Tools☆34Mar 7, 2025Updated last year
- SBOM Move - Automate build and transfer of SBOMs across systems☆26May 4, 2026Updated last month
- A tool to create, transform and attest VEX metadata☆194Updated this week
- Build a CVE library with aggregated CISA, EPSS and CVSS data☆29Sep 27, 2023Updated 2 years ago
- Bare Metal GPUs on DigitalOcean Gradient AI • AdPurpose-built for serious AI teams training foundational models, running large-scale inference, and pushing the boundaries of what's possible.
- Prototype in-toto attestation verifier based on ITE-10 and ITE-11 layouts☆19May 18, 2026Updated 3 weeks ago
- OpenVEX Specification☆181Jan 16, 2026Updated 4 months ago
- A taxonomy of all official CycloneDX property namespaces and names☆22May 23, 2026Updated 2 weeks ago
- EZGHSA is a command-line tool for summarizing and filtering vulnerability alerts on Github repositories.☆35Jan 4, 2026Updated 5 months ago
- apt2sbom python package generates SPDX or CycloneDX files from Ubuntu APT and Python packaging information☆25Feb 4, 2022Updated 4 years ago
- fatt tries to find any purl in your project by looking at predefined fields in the supported packages. These fields describe using a purl…☆11May 11, 2026Updated 3 weeks ago
- An SBOM query language and associated utilities☆56Jan 22, 2024Updated 2 years ago
- ☆83Dec 10, 2025Updated 5 months ago
- Generate SBOMs with gh CLI☆206May 30, 2025Updated last year
- Deploy on Railway without the complexity - Free Credits Offer • AdConnect your repo and Railway handles the rest with instant previews. Quickly provision container image services, databases, and storage volumes.
- OSS License Open Data☆12Jun 28, 2019Updated 6 years ago
- OSS License Simple Viewer is a simple Excel-based tool as OSS license reference for engineers.☆14Nov 20, 2020Updated 5 years ago
- fatbom (Fat Bill Of Materials) is a tool which combines the SBOM generated by various tools into one fat SBOM. Thus leveraging each tool'…☆32Oct 24, 2022Updated 3 years ago
- Darkfiles finds orphaned files in container images and makes them to bad deeds☆43May 11, 2023Updated 3 years ago
- Format agnostic SBOM tooling☆136Nov 20, 2025Updated 6 months ago
- Utility that converts SBOM documents from CycloneDX to SPDX☆33Jan 19, 2024Updated 2 years ago
- Example CLI project to demo API architecture and protobom library☆25May 6, 2026Updated last month
- This repository stores meetings minutes for the SPDX project☆42Jun 1, 2026Updated last week
- Github Action implementation of SLSA Provenance Generation☆50Updated this week
- GPU virtual machines on DigitalOcean Gradient AI • AdGet to production fast with high-performance AMD and NVIDIA GPUs you can spin up in seconds. The definition of operational simplicity.
- Integrity Shield is a tool for built-in preventive integrity control for regulated cloud workloads. It provides signature-based assurance…☆17Sep 22, 2022Updated 3 years ago
- Show your WakaTime statistics in a pinned gist for your GitHub profile☆12Jun 2, 2026Updated last week
- Helm Chart for deploying GUAC☆18Mar 9, 2026Updated 3 months ago
- Public website for more OSMud information☆19Sep 14, 2023Updated 2 years ago
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆68Apr 8, 2024Updated 2 years ago
- Automatically create a glossary in typst.☆23Jul 25, 2024Updated last year
- Enrich SBOMs with data from third party services☆227May 18, 2026Updated 3 weeks ago