purl

There are 47 repositories under purl topic.

  • dependency-track

    DependencyTrack/dependency-track

    Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

    Language:Java2.4k691.8k528
  • nexB/scancode-toolkit

    :mag: ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase, the Google Summer of Code, Azure credits, nexB and others generous sponsors!

    Language:Python2k732.5k534
  • package-url/purl-spec

    A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby

  • nexB/vulnerablecode

    A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sponsored by NLnet https://nlnet.nl/project/vulnerabilitydatabase/ for https://www.aboutcode.org/ Chat at https://gitter.im/aboutcode-org/vulnerablecode Docs at https://vulnerablecode.readthedocs.org/

    Language:Python50122895186
  • CycloneDX/cdxgen

    Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server. Slack: https://cyclonedx.slack.com/archives/C04NFFE1962

    Language:JavaScript49014624142
  • cyclonedx-maven-plugin

    CycloneDX/cyclonedx-maven-plugin

    Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects

    Language:Java2761518384
  • cyclonedx-cli

    CycloneDX/cyclonedx-cli

    CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.

    Language:C#2721615159
  • cyclonedx-python

    CycloneDX/cyclonedx-python

    CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments

    Language:Python2221416263
  • cyclonedx-dotnet

    CycloneDX/cyclonedx-dotnet

    Creates CycloneDX Software Bill of Materials (SBOM) from .NET Projects

    Language:C#1671318678
  • cyclonedx-gradle-plugin

    CycloneDX/cyclonedx-gradle-plugin

    Creates CycloneDX Software Bill of Materials (SBOM) from Gradle projects

    Language:Java1451113972
  • tiiuae/sbomnix

    A suite of utilities to help with software supply chain challenges on nix targets

    Language:Python10781819
  • nexB/scancode.io

    ScanCode.io is a server to script and automate software composition analysis pipelines with ScanPipe pipelines. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ Google Summer of Code, nexB and others generous sponsors!

    Language:Python941479183
  • AppThreat/vulnerability-db

    Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.0, purl, and vers.

    Language:Python8166922
  • cyclonedx-rust-cargo

    CycloneDX/cyclonedx-rust-cargo

    Creates CycloneDX Software Bill of Materials (SBOM) from Rust (Cargo) projects

    Language:Rust79108840
  • CycloneDX/sbom-utility

    Utility that provides an API platform for validating, querying and managing BOM data

    Language:Go7953712
  • cyclonedx-core-java

    CycloneDX/cyclonedx-core-java

    CycloneDX SBOM Model and Utils for Creating and Validating BOMs

    Language:Java7387856
  • package-url/packageurl-python

    Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ , the Google Summer of Code, nexB and other generous sponsors.

    Language:Python6297341
  • cyclonedx-python-lib

    CycloneDX/cyclonedx-python-lib

    Python implementation of OWASP CycloneDX

    Language:Python611514933
  • nikstur/bombon

    Nix CycloneDX Software Bills of Materials (SBOMs)

    Language:Rust54385
  • package-url/packageurl-go

    Go implementation of the package url spec

    Language:Go5032445
  • cyclonedx-php-composer

    CycloneDX/cyclonedx-php-composer

    Create CycloneDX Software Bill of Materials (SBOM) from PHP Composer projects

    Language:PHP455767
  • VexStore/fatbom

    fatbom (Fat Bill Of Materials) is a tool which combines the SBOM generated by various tools into one fat SBOM. Thus leveraging each tool's strength.

    Language:Go32240
  • nexB/purldb

    Tools to create and expose a database of purls (Package URLs). This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ and nexB for https://www.aboutcode.org/ Chat is at https://gitter.im/aboutcode-org/discuss

    Language:HTML291032221
  • nexB/univers

    Parse and compare all the package versions and all the ranges. From debian, npm, pypi, ruby and more. Process all the version range specs and expressions. This project is sponsored by an NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ , the Google Summer of Code, nexB and others generous sponsors!

    Language:Python28117010
  • cyclonedx-web-tool

    CycloneDX/cyclonedx-web-tool

    A web based tool for working with CycloneDX BOMs

    Language:HTML274155
  • cyclonedx-conan

    CycloneDX/cyclonedx-conan

    Creates CycloneDX Software Bill of Materials (SBOM) documents for C/C++ projects using Conan

    Language:Python2451313
  • cyclonedx-webpack-plugin

    CycloneDX/cyclonedx-webpack-plugin

    Generate CycloneDX Software Bill of Materials (SBOM) from webpack bundles at compile time.

    Language:JavaScript234408
  • package-url/packageurl-java

    Java/JVM implementation of the package url spec

    Language:Java2161914
  • package-url/packageurl-js

    JavaScript implementation of the package url spec

    Language:JavaScript2143021
  • package-url/packageurl-swift

    Swift implementation of the package url spec

    Language:Swift21201
  • cyclonedx-ruby-gem

    CycloneDX/cyclonedx-ruby-gem

    Creates CycloneDX Software Bill of Materials (SBOM) from Ruby projects

    Language:Ruby195918
  • nexB/dejacode

    Automate open source license compliance and ensure software supply chain integrity

    Language:Python187887
  • package-url/packageurl-dotnet

    .NET implementation of the package url spec

    Language:C#122911
  • phylum-dev/purl

    Package URL implementation for Rust

    Language:Rust10630
  • louib/nix2sbom

    nix2sbom extracts the SBOM (Software Bill of Materials) from a Nix derivation

    Language:Rust73161
  • package-url/packageurl-php

    PHP implementation of the package url spec

    Language:PHP74174