Skip to content
#

sbom-distribution

Here are 8 public repositories matching this topic...

Language: All
Filter by language

Evidence store for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, etc. With Chainloop, Security and Compliance teams can define policies, what evicence to receive and where to store it. Developers are shielded from this complexity by getting simple instructions on what to provide when instrumenting their CI/CD pipeline

  • Updated Jan 31, 2025
  • Go
actions-sbom

A GitHub Action that creates a SBOM from your application so you can meet compliance and security requirements. Add this to your dev, staging and prod steps and SecureStack will make sure that what you've just deployed is secure and meets your requirements, and has the SBOM to show it!

  • Updated Jun 7, 2023

SBOMinify is a GitHub Action to capture and list installed packages and their versions in a Docker image, generating Software Bill of Materials (SBOM) files. This action leverages some special technics to scan Docker images and output SBOM files in both table and JSON formats.

  • Updated Jan 19, 2025
  • Shell

Improve this page

Add a description, image, and links to the sbom-distribution topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the sbom-distribution topic, visit your repo's landing page and select "manage topics."

Learn more