Pinned Repositories
TAC
Automating Compliance Tooling Project
actions-test-repo
Arduino
Arduino sketches
bom
A utility to generate SPDX-compliant Bill of Materials manifests
colin
Tool to check generic rules/best-practices for containers/images/dockerfiles.
meetings-1
This repository stores meetings minutes for the SPDX project
purl-spec
A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby
spdx-spec
The SPDX specification in MarkDown and HTML formats.
tern
Open Source compliance for containers
tern
Tern is a software composition analysis tool and Python library that generates a Software Bill of Materials for container images and Dockerfiles. The SBOM that Tern generates will give you a layer-by-layer view of what's inside your container in a variety of formats including human-readable, JSON, HTML, SPDX and more.
rnjudge's Repositories
rnjudge/actions-test-repo
rnjudge/Arduino
Arduino sketches
rnjudge/bom
A utility to generate SPDX-compliant Bill of Materials manifests
rnjudge/colin
Tool to check generic rules/best-practices for containers/images/dockerfiles.
rnjudge/javapractice
Getting back in to the swing of Java
rnjudge/meetings-1
This repository stores meetings minutes for the SPDX project
rnjudge/purl-spec
A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby
rnjudge/spdx-spec
The SPDX specification in MarkDown and HTML formats.
rnjudge/tern
Open Source compliance for containers
rnjudge/cosign
Container Signing
rnjudge/go-vex
Go module to generate and transform VEX documents
rnjudge/governance
SPDX Governance, based on Community Specification model
rnjudge/kubernetes
Production-Grade Container Scheduling and Management
rnjudge/meetings
This repository stores minutes for the Tern project's community meetings
rnjudge/outreach
content for outreach activities
rnjudge/python
rnjudge/rnjudge
rnjudge/sbom-composer
A tool that takes two or more microSBOMs and composes them into one distributable SBOM
rnjudge/sbom-know-how
A documentation to bring SBOMs know-how into one place, including specifications, tools and useful references.
rnjudge/sigstore
Common go library shared across sigstore services and clients
rnjudge/spdx-3-model
rnjudge/spdx-examples
Examples of SPDX files for software combinations
rnjudge/spdx-use-cases
Use case descriptions for the SPDX specification
rnjudge/spec
OpenVEX Specification
rnjudge/syft
CLI tool and library for generating a Software Bill of Materials from container images and filesystems
rnjudge/TAC
Automating Compliance Tooling Project
rnjudge/tern-api
Code for Tern APIs
rnjudge/tern-dev-workshop
Educates dev workshop for Tern
rnjudge/tools
SPDX Tools