Movatterモバイル変換


[0]ホーム

URL:


Skip to content

Navigation Menu

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
#

supply-chain-security

Here are 155 public repositories matching this topic...

Supply-chain Levels for Software Artifacts

  • UpdatedMar 27, 2025
  • Shell

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.

  • UpdatedMar 27, 2025
  • Python

Tern is a software composition analysis tool and Python library that generates a Software Bill of Materials for container images and Dockerfiles. The SBOM that Tern generates will give you a layer-by-layer view of what's inside your container in a variety of formats including human-readable, JSON, HTML, SPDX and more.

  • UpdatedMar 12, 2024
  • Python

Detect and remediate misconfigurations and security risks across all your GitHub and GitLab assets

  • UpdatedMar 21, 2025
  • Go

Harden-Runner is a CI/CD security agent that works like an EDR for GitHub Actions runners. It monitors network egress, file integrity, and process activity on those runners, detecting threats in real-time.

  • UpdatedMar 25, 2025
  • TypeScript

Graphing SBOM's Fast.

  • UpdatedMar 24, 2025
  • Go

Packj stops ⚡ Solarwinds-, ESLint-, and PyTorch-like attacks by flagging malicious/vulnerable open-source dependencies ("weak links") in your software supply-chain

  • UpdatedApr 2, 2024
  • Python

Independent verification of binary packages - Reproducible Builds

  • UpdatedMar 4, 2025
  • Rust

Docker Scout CLI

  • UpdatedMar 18, 2025
  • Shell

BLint is a Binary Linter to check the security properties, and capabilities in your executables. Since v2, blint is also an SBOM generator for binaries.

  • UpdatedMar 27, 2025
  • Python
vet

🚀 Policy driven vetting of open source packages with malicious code analysis

  • UpdatedMar 26, 2025
  • Go

Developer-centric tool to secure your software supply chain.

  • UpdatedDec 17, 2024
  • Go

Orchestrate GitHub Actions Security

  • UpdatedMar 25, 2025
  • Go

JavaScript & Node.js open-source SAST scanner. A static analyser for detecting most common malicious patterns 🔬.

  • UpdatedMar 9, 2025
  • JavaScript
PRevent

Improve this page

Add a description, image, and links to thesupply-chain-security topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with thesupply-chain-security topic, visit your repo's landing page and select "manage topics."

Learn more


[8]ページ先頭

©2009-2025 Movatter.jp