synopsys-sig / synopsys-action
Synopsys Action consuming Synopsys scanning tools
☆24Updated last month
Alternatives and similar repositories for synopsys-action:
Users that are interested in synopsys-action are comparing it to the libraries listed below
- Check SPDX SBOM for NTIA minimum elements☆58Updated this week
- ☆28Updated last month
- HUB REST API Python bindings☆91Updated last week
- Incubating project for decoupling responsibilities from Dependency-Track's monolithic API server into separate, scalable services.☆66Updated this week
- CycloneDX SBOM Model and Utils for Creating and Validating BOMs☆84Updated this week
- Python implementation of OWASP CycloneDX☆73Updated this week
- CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.☆327Updated 2 months ago
- Utility that converts SBOM documents from CycloneDX to SPDX☆29Updated last year
- A repository with examples of CycloneDX BOMs (SBOM, SaaSBOM, OBOM, VEX, etc)☆190Updated last month
- Generate a score for your sbom to understand if it will actually be useful.☆224Updated 5 months ago
- A BOM repository server for distributing CycloneDX BOMs☆75Updated 10 months ago
- SBOM quality score - Quality metrics for your sboms☆192Updated this week
- Frontend UI for Dependency-Track☆109Updated this week
- Main repository for the official Dependency-Track Jenkins plugin☆46Updated last week
- Examples of SPDX files for software combinations☆125Updated this week
- SBOM Assembler - A tool to edit SBOM or assemble multiple sboms into a single sbom.☆62Updated this week
- Utility that provides an API platform for validating, querying and managing BOM data☆99Updated 2 months ago
- Enrich SBOMs with data from third party services☆152Updated this week
- Utility that provides an API and CLI to identify licenses and legal terms☆43Updated 7 months ago
- Java libraries for working with available vulnerability data sources (GitHub Security Advisories, NVD, EPSS, CISA Known Exploited Vulnera…☆133Updated this week
- OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reductio…☆376Updated last week
- A tool to create, transform and attest VEX metadata☆126Updated this week
- Scanning and analysis for Black Duck SCA products.☆166Updated this week
- Lockheed Martin developed utility to generate CycloneDX SBOMs for Linux distributions☆41Updated 8 months ago
- GitHub Advanced Security Policy as Code☆77Updated 2 weeks ago
- GitHub Action for creating software bill of materials using Syft.☆174Updated last week
- SPDX Tools☆132Updated last year
- ☆113Updated 7 months ago
- The S2C2F Project is a group working within the OpenSSF's Supply Chain Integrity Working Group formed to further develop and continuously…☆195Updated 5 months ago
- This repository creates pull requests to push a GitHub Actions workflow to a collection of workflows.☆45Updated last year