Todas las etiquetas
Etiqueta del catálogo

#cyclonedx

Todos los repositorios del registro público que llevan esta etiqueta, procedente de sus topics de GitHub o de las palabras clave que publican sus registros de paquetes. La salud se mide con la misma metodología versionada que el resto del registro.

31 registros
Con la etiqueta «cyclonedx»Ordenado por índice de salud
Go
98Excepcionalíndice de salud
anchore/syft
CLI tool and library for generating a Software Bill of Materials from container images and filesystems
Go★ 946528 ago 2026
Apache-2.028 ago 2026 · métricas 2.10.0
Go
98Excepcionalíndice de salud
chainloop-dev/chainloop
SDLC evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more
Go★ 57016 jul 2026
Apache-2.016 jul 2026 · métricas 2.10.0
Go
96Excepcionalíndice de salud
anchore/grype
A vulnerability scanner for container images and filesystems
Go★ 12.8K27 ago 2026
Apache-2.027 ago 2026 · métricas 2.10.0
PyPI
95Excepcionalíndice de salud
CycloneDX/cyclonedx-python
CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments
Python★ 390↓ 2.2M/mes27 ago 2026
Apache-2.027 ago 2026 · métricas 2.10.0
PyPI · npm
94Excepcionalíndice de salud
msaad00/agent-bom
Open security scanner and self-hosted control plane for AI, MCP, and cloud. One evidence model — run scans in your environment, centralize findings, govern in your VPC.
Python · TypeScript★ 28↓ 5301/mes16 jul 2026
Apache-2.016 jul 2026 · métricas 2.10.0
Maven · npm
94Excepcionalíndice de salud
oss-review-toolkit/ort
A suite of tools to automate software compliance checks.
Kotlin★ 205117 jul 2026
Apache-2.017 jul 2026 · métricas 2.10.0
npm · Maven · NuGet +1
92Excelenteíndice de salud
cdxgen/cdxgen
Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server
JavaScript★ 1018↓ 745.3K/mes28 jul 2026
Apache-2.028 jul 2026 · métricas 2.10.0
Packagist
91Excelenteíndice de salud
CycloneDX/cyclonedx-php-composer
Create CycloneDX Software Bill of Materials (SBOM) from PHP Composer projects
PHP★ 87↓ 91.9K/mes29 jul 2026
Apache-2.029 jul 2026 · métricas 2.10.0
PyPI
90Excelenteíndice de salud
CycloneDX/cyclonedx-python-lib
Functionality and DataModels of OWASP CycloneDX for Python
Python★ 11317 jul 2026
Apache-2.017 jul 2026 · métricas 2.10.0
npm
89Excelenteíndice de salud
janbiasi/rollup-plugin-sbom
Create SBOMs in CycloneDX format for your Vite, Rollup or Rolldown projects with ease
TypeScript★ 23↓ 177.5K/mes17 jul 2026
MIT17 jul 2026 · métricas 2.10.0
PyPI
89Excelenteíndice de salud
kdeldycke/meta-package-manager
🎁 wraps all package managers with a unifying CLI
Python★ 60920 jul 2026
GPL-2.020 jul 2026 · métricas 2.10.0
PyPI
86Excelenteíndice de salud
aboutcode-org/scancode-toolkit
:mag: ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet, the Google Summer of Code, Azure credits, nexB and other generous sponsors!
Python · C · Shell★ 258321 jul 2026
Licencia propia21 jul 2026 · métricas 2.10.0
Go · PyPI
86Excelenteíndice de salud
bomly-dev/bomly-cli
Free, open-source CLI for dependency intelligence, SBOMs, vulnerability auditing, and CI policy gates.
Go★ 917 jul 2026
Apache-2.017 jul 2026 · métricas 2.10.0
Maven · npm
86Excelenteíndice de salud
eclipse-apoapsis/ort-server
A scalable server implementation of the OSS Review Toolkit.
Kotlin · TypeScript★ 6615 jul 2026
Apache-2.015 jul 2026 · métricas 2.10.0
npm
84Excelenteíndice de salud
CycloneDX/cyclonedx-node-module
creates CycloneDX Software-Bill-of-Materials (SBOM) from Node.js-based projects
Mixto★ 145↓ 76.5K/mes5 sept 2026
Apache-2.05 sept 2026 · métricas 2.10.0
PyPI · npm
84Excelenteíndice de salud
owasp-dep-scan/dep-scan
OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container images are supported as the input, and the tool is ideal for integration.
Python★ 1281↓ 10.9K/mes24 ago 2026
MIT24 ago 2026 · métricas 2.10.0
83Excelenteíndice de salud
CycloneDX/cyclonedx-cli
CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.
C#★ 53321 ago 2026
Apache-2.021 ago 2026 · métricas 2.10.0
NuGet
83Excelenteíndice de salud
CycloneDX/cyclonedx-dotnet-library
.NET library to consume and produce CycloneDX Software Bill of Materials (SBOM)
C#★ 2822 jul 2026
Apache-2.022 jul 2026 · métricas 2.10.0
Maven
83Excelenteíndice de salud
CycloneDX/cyclonedx-maven-plugin
Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects
Java★ 37530 jul 2026
Apache-2.030 jul 2026 · métricas 2.10.0
Hex
83Excelenteíndice de salud
erlef/mix_sbom
Mix task to generate a Software Bill-of-Materials (SBoM) in CycloneDX format
Elixir★ 47↓ 29.6K/mes17 jul 2026
Licencia propia17 jul 2026 · métricas 2.10.0
Go
81Excelenteíndice de salud
CycloneDX/sbom-utility
Utility that provides an API platform for validating, querying and managing BOM data
Go★ 1633 sept 2026
Apache-2.03 sept 2026 · métricas 2.10.0
Go
81Excelenteíndice de salud
airomhq/airom
Open-source AI Bill of Materials (AIBOM) scanner: inventories AI models, datasets, prompts, embeddings, vector DBs & RAG pipelines across code, containers & Kubernetes — with file:line evidence, load-time risk detection (poisoned pickle / Keras Lambda / unsafe torch.load) and NIST AI RMF / OWASP compliance mapping. CycloneDX · SARIF · JSON.
Go · MDX★ 823 jul 2026
Apache-2.023 jul 2026 · métricas 2.10.0
PyPI
78Buenoíndice de salud
cpeoples/ansible-security-scanner
🛡️ Static security scanner (SAST) for Ansible playbooks, roles, and collections. 1,000+ rules across 30+ categories detecting malicious code, RCE, hardcoded credentials, and supply-chain risk. Outputs SARIF, CycloneDX SBOM, and GitLab SAST. SLSA Build Level 3, Sigstore-signed.
Python★ 9↓ 1928/mes17 jul 2026
Apache-2.017 jul 2026 · métricas 2.10.0
Go
78Buenoíndice de salud
rezmoss/sbomlyze
git diff for your SBOM ,compare CycloneDX/SPDX/Syft bills of materials, detect tampering, and gate CI
Go★ 2420 jul 2026
Apache-2.020 jul 2026 · métricas 2.10.0
78Buenoíndice de salud
voltone/rebar3_sbom
Rebar3 plugin to generate CycloneDX SBoM
Erlang★ 1217 jul 2026
Licencia propia17 jul 2026 · métricas 2.10.0
Go · npm · PyPI
75Buenoíndice de salud
KKloudTarus/synapse-ce
Synapse - a governed control plane for software composition analysis, recon, evidence, and reporting. Verify Everything. Trust Nothing.
Go · Python★ 336 ago 2026
Apache-2.06 ago 2026 · métricas 2.10.0
Go
75Buenoíndice de salud
TomTonic/extract-sbom
Sandboxed SBOM extraction from arbitrary artifacts. Outputs traceability records and CycloneDX JSON for automation, auditability, and supply chain security.
Go★ 221 jul 2026
BSD-3-Clause21 jul 2026 · métricas 2.10.0
PyPI · npm
73Buenoíndice de salud
aiexponenthq/license-compliance-checker
License Compliance Checker — Multi-ecosystem license + AI model scanner for EU AI Act Article 53 GPAI compliance. SBOM, SARIF, training-data risk. Apache 2.0.
Python · TypeScript★ 1↓ 258/mes27 jul 2026
Apache-2.027 jul 2026 · métricas 2.10.0
Go
71Buenoíndice de salud
Vulnetix/cli
Automate vulnerability triage which prioritizes remediation over discovery
Go · Open Policy Agent★ 255 sept 2026
Licencia propia5 sept 2026 · métricas 2.10.0
Maven
69Buenoíndice de salud
MediaMarktSaturn/technolinator
GitHub app for SBOM creation using cdxgen and upload to Dependency-Track
Java★ 2427 jul 2026
Apache-2.027 jul 2026 · métricas 2.10.0