sigstore / sigstore-pythonLinks
A Sigstore client written in Python
☆305Updated last week
Alternatives and similar repositories for sigstore-python
Users that are interested in sigstore-python are comparing it to the libraries listed below
Sorting:
- A GitHub Action for sigstore-python☆63Updated this week
- This is a repository of vulnerability advisories for projects in scope for the Python Software Foundation CVE Numbering Authority (CNA)☆38Updated last week
- A GitHub Action for pip-audit☆81Updated last week
- Software Bill-of-Materials documents for Python packages☆44Updated 10 months ago
- A Python library to parse, validate and create SPDX documents.☆231Updated 5 months ago
- Check your Python environments for vulnerable Open Source packages with OSS Index or Sonatype Nexus Lifecycle.☆132Updated 6 months ago
- Umbrella Repository Service for TUF☆57Updated 2 weeks ago
- A tool to generate a SBOM (Software Bill of Materials) for an installed Python module☆37Updated 2 months ago
- Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase…☆85Updated last month
- Functionality and DataModels of OWASP CycloneDX for Python☆98Updated last week
- Cryptographic and general-purpose routines for Secure Systems Lab projects at NYU☆52Updated last week
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆111Updated 3 weeks ago
- Data about packages and maintainers on PyPI☆129Updated 2 months ago
- A decorator to aid in annotating logs for easier reading and searching☆94Updated last week
- Dlint is a tool for encouraging best coding practices and helping ensure Python code is secure.☆174Updated last month
- Verify certificates using OS trust stores☆212Updated last month
- CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments☆349Updated last week
- Advisory database for Python packages published on pypi.org☆313Updated 2 weeks ago
- Resolve abstract dependencies into concrete ones☆159Updated last month
- 🕵️ File browser for distributions on PyPI☆110Updated last month
- Verify provenance from SLSA compliant builders☆301Updated last month
- Python module for OpenPGP written in Rust.☆53Updated 2 weeks ago
- Tools to create and expose a database of purls (Package URLs). This project is sponsored by NLnet project https://nlnet.nl/project/vulner…☆57Updated last week
- Utility library to parse, normalize and compare License expressions for Python using a boolean logic engine. For expressions using SPDX …☆71Updated 5 months ago
- This tool compares two Software Bill of Materials (SBOMs) and reports the differences.☆40Updated last year
- Fetches security vulnerabilities and creates pip-constraints based on them.☆12Updated 11 months ago
- Scans Python packages for abi3 violations and inconsistencies☆119Updated last week
- Packaging improvements that could be funded☆56Updated 2 years ago
- Log monitor for Rekor to verify immutability and monitor entries☆42Updated last week
- Canonical source for classifiers on PyPI.☆178Updated 3 weeks ago