#cyclonedx (12 Repositories)
Ranked open-source repositories tagged with #cyclonedx, scored by pull request acceptance likelihood and maintainer engagement velocity.
56.2%
161.7h
12 repositories tagged #cyclonedx
chainloop-dev/chainloop
SDLC evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more
cdxgen/cdxgen
Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server
relizaio/rearm
ReARM - Release Governance Platform
interlynk-io/sbomqs
sbomqs: The Comprehensive SBOM Quality & Compliance Tool
CycloneDX/specification
OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and VEX
CycloneDX/cyclonedx-core-java
CycloneDX SBOM Model and Utils for Creating and Validating BOMs
CycloneDX/cyclonedx-gradle-plugin
Creates CycloneDX Software Bill of Materials (SBOM) from Gradle projects
anchore/syft
CLI tool and library for generating a Software Bill of Materials from container images and filesystems
CycloneDX/cyclonedx-dotnet
Creates CycloneDX Software Bill of Materials (SBOM) from .NET Projects
owasp-dep-scan/dep-scan
OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.
interlynk-io/sbomasm
sbomasm: The Complete SBOM Management Toolkit
snyk/parlay
Enrich SBOMs with data from third party services