psf / sboms-for-python-packagesLinks
Software Bill-of-Materials documents for Python packages
☆42Updated 7 months ago
Alternatives and similar repositories for sboms-for-python-packages
Users that are interested in sboms-for-python-packages are comparing it to the libraries listed below
Sorting:
- A GitHub Action for sigstore-python☆60Updated this week
- A Sigstore client written in Python☆295Updated this week
- Packaging improvements that could be funded☆55Updated 2 years ago
- Data about packages and maintainers on PyPI☆129Updated last week
- The toolkit for building extension modules☆24Updated 2 years ago
- Dlint is a tool for encouraging best coding practices and helping ensure Python code is secure.☆170Updated 11 months ago
- Check for stylistic and formal issues in .rst and .py files included in the documentation☆91Updated 3 weeks ago
- Create reproducible installations for a virtual environment from a lock file☆85Updated last month
- ☆53Updated last year
- Validation library for simple check on `pyproject.toml`☆178Updated this week
- Update GitHub Actions version pins in GitHub workflow files.☆37Updated 2 months ago
- Pytest plugin to fake subprocess.☆114Updated this week
- A tool for running a PEP-503 simple Python package repository, including features such as dist metadata (PEP-658) and JSON API (PEP-691)☆22Updated 2 weeks ago
- Security audit Python project dependencies against security advisory databases.☆66Updated last month
- Vendy is a tool for vendoring third-party packages into your project.☆17Updated last year
- Extensions for Sphinx which allow substitutions☆41Updated this week
- A command line tool, to simplify vendoring pure Python dependencies.☆80Updated this week
- A parser for Python dependency files☆64Updated 10 months ago
- Resolve abstract dependencies into concrete ones☆157Updated 3 months ago
- Build and Inspect Python Packages in GitHub Actions☆203Updated last week
- Versioning It with your Version In Git☆99Updated 2 weeks ago
- Check your Python environments for vulnerable Open Source packages with OSS Index or Sonatype Nexus Lifecycle.☆126Updated 4 months ago
- Add inline tabbed content to your Sphinx documentation. (maintained, though extremely stable as of Jan 2022)☆88Updated this week
- Render CLI arguments (sub-commands friendly) defined by the argparse module.☆24Updated this week
- A Sphinx extension for linking to your project's issue tracker☆58Updated last week
- Creation & manipulation of PyPI tokens☆12Updated last week
- This is a repository of vulnerability advisories for projects in scope for the Python Software Foundation CVE Numbering Authority (CNA)☆37Updated this week
- ☆194Updated last week
- Python asyncio + aiohttp Markdown *.md URL link checker: 10,000 files/second☆38Updated 9 months ago
- Scan your uv.lock file for dependencies with known vulnerabilities☆89Updated last week