Revolutionize your code reviews with AI. CodeRabbit offers PR summaries, code walkthroughs, 1-click suggestions, and AST-based analysis. Boost productivity and code quality across all major languages with each PR. Learn more →
Top 7 Go cyclonedx Projects
-
-
InfluxDB
InfluxDB high-performance time series database. Collect, organize, and act on massive volumes of high-resolution data to power real-time intelligent systems.
-
syft
CLI tool and library for generating a Software Bill of Materials from container images and filesystems
Syft (https://github.com/anchore/syft) and ScanCode (https://github.com/aboutcode-org/scancode-toolkit) are good open-source tools to generate SBOMs and search repos for licensing information — I'm curious to hear if there are reasons why those wouldn't work for enterprise purposes.
-
-
chainloop
Evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more
-
-
-
-
CodeRabbit
CodeRabbit: AI Code Reviews for Developers. Revolutionize your code reviews with AI. CodeRabbit offers PR summaries, code walkthroughs, 1-click suggestions, and AST-based analysis. Boost productivity and code quality across all major languages with each PR.
Go cyclonedx discussion
Go cyclonedx related posts
-
Open Source projects could sell SBoM fragments
-
Deep Dive 🤿: Where Does Grype Data Come From?
-
Ask HN: Pragmatic way to avoid supply chain attacks as a developer
-
12 Things You Might Not Know About Buildpacks
-
Bomber - Scans SBOMs for Vulnerabilities
-
bomber: Scans SBoMs for security vulnerabilities
-
bomber - a vulnerability scanner for SBOMs
-
A note from our sponsor - CodeRabbit
coderabbit.ai | 30 Apr 2025