psf / advisory-databaseLinks
This is a repository of vulnerability advisories for projects in scope for the Python Software Foundation CVE Numbering Authority (CNA)
☆35Updated last week
Alternatives and similar repositories for advisory-database
Users that are interested in advisory-database are comparing it to the libraries listed below
Sorting:
- A GitHub Action for sigstore-python☆54Updated last week
- Data about packages and maintainers on PyPI☆128Updated 3 months ago
- A Sigstore client written in Python☆284Updated last week
- 🕵️ File browser for distributions on PyPI☆106Updated this week
- Packaging improvements that could be funded☆55Updated 2 years ago
- Update GitHub Actions version pins in GitHub workflow files.☆33Updated 3 weeks ago
- Canonical source for classifiers on PyPI.☆164Updated 2 months ago
- Software Bill-of-Materials documents for Python packages☆41Updated 5 months ago
- a GitHub action to install (pre-release) pythons from deadsnakes☆56Updated last week
- A GitHub Action for pip-audit☆75Updated last week
- CLI to open PEPs in your browser☆37Updated 3 weeks ago
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆77Updated this week
- ☆188Updated 3 weeks ago
- Advisory database for Python packages published on pypi.org☆300Updated this week
- An unofficial, importable pip API☆114Updated last week
- A parser for Python dependency files☆65Updated 8 months ago
- generate random python code to test linter/formatter/and other tools☆44Updated last month
- Check for stylistic and formal issues in .rst and .py files included in the documentation☆89Updated last month
- A low-level library for calling build-backends in `pyproject.toml`-based project☆130Updated last month
- Automatically updated pypi API data, available in bulk via git or sqlite☆79Updated this week
- Render CLI arguments (sub-commands friendly) defined by the argparse module.☆24Updated last week
- Dlint is a tool for encouraging best coding practices and helping ensure Python code is secure.☆168Updated 9 months ago
- Validation library for simple check on `pyproject.toml`☆166Updated this week
- Resolve abstract dependencies into concrete ones☆157Updated last month
- Create reproducible installations for a virtual environment from a lock file☆85Updated 5 months ago
- Action to have pip install from a requirements file as securely as possible☆41Updated 3 years ago
- Verify certificates using OS trust stores☆192Updated last week
- Packaging Metadata Comparions☆18Updated 5 years ago
- Pytest plugin to fake subprocess.☆113Updated 2 months ago
- Use uv in GitHub Actions by adding one line to the workflow.☆61Updated 6 months ago