scanoss / engineLinks
SCANOSS Open Source Inventory Engine
☆41Updated last week
Alternatives and similar repositories for engine
Users that are interested in engine are comparing it to the libraries listed below
Sorting:
- The SCANOSS SBOM Workbench graphical user interface to scan and audit your source code.☆59Updated last week
- SCANOSS Mining tool☆25Updated 3 weeks ago
- The SCANOSS python package providing a simple, easy to consume library for interacting with SCANOSS APIs/Engine.☆38Updated this week
- A light-weight app to audit and inventory large codebases for open source license compliance.☆72Updated this week
- PURL to CPE Relationship mapping project.☆110Updated this week
- Utility that converts SBOM documents from CycloneDX to SPDX☆33Updated 2 years ago
- SARIF Microsoft Visual Studio Code extension☆132Updated 2 weeks ago
- Audit C/C++ projects (make, cmake, command line, etc.)☆27Updated 4 years ago
- OSS License Open Data☆12Updated 6 years ago
- Produce an Open Source Vulnerability JSON file based on information in an SPDX document☆65Updated last year
- Open Source License Compliance Checklists☆11Updated last year
- Publications done by Double Open.☆16Updated 5 years ago
- Examples of SPDX files for software combinations☆142Updated 2 months ago
- This tool compares two Software Bill of Materials (SBOMs) and reports the differences.☆40Updated last year
- sbomasm: The Complete SBOM Management Toolkit☆101Updated this week
- Python classes for the SARIF object model☆45Updated last year
- SPDX 2.0 document creation and storage☆16Updated 3 years ago
- A collection of scripts for license compliance scanning, mostly experimental☆21Updated 7 months ago
- A set of Python command line tools for working with SARIF files produced by code analysis tools☆140Updated 5 months ago
- OSADL license compatibility matrix as a CSV☆17Updated last year
- Automate open source license compliance and ensure software supply chain integrity☆39Updated 3 weeks ago
- User-friendly documentation for the SARIF file format.☆337Updated 2 years ago
- Service to scan licenses from source code☆12Updated 2 years ago
- A taxonomy of attacks on software supply chains in the form of an attack tree, based on and linked to numerous real-world incidents and o…☆79Updated 2 weeks ago
- The model for the information captured in SPDX version 3 standard.☆97Updated last week
- Analyse package dependency networks at the call graph level☆96Updated 2 years ago
- List of SBOM Generation Tools☆29Updated 10 months ago
- SPDX Tools☆143Updated 3 months ago
- GitHub action to produce a SBOM report from a given Black Duck project☆12Updated 2 weeks ago
- A free and open database of all the licenses, in particular all the open source software licenses☆58Updated 2 weeks ago