yutayamate

yutayamate/cdxgen

Creates CycloneDX Software Bill-of-Materials (SBOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI//CD pipeline with automatic submission to Dependency Track server.

JavaScript
0
0
Apache License 2.0

cdxgen is a CLI tool and library for generating CycloneDX Software Bill-of-Materials (SBOM) files from source code and container images, supporting multiple programming languages and package managers. It's designed for developers, security teams, and organizations needing comprehensive dependency tracking and vulnerability management in their software supply chain.

Total donated
Undistributed
Share with your subscribers:

Recipients

How the donated funds are distributed

Support the dependencies of yutayamate/cdxgen

Account's avatar
A JavaScript parser
Account's avatar
The Babel Traverse module maintains the overall tree state, and is responsible for replacing, removing, and adding nodes
Account's avatar
Format validation for Ajv v7+
Account's avatar
The fast, flexible & elegant library for parsing and manipulating HTML and XML.
Account's avatar
EDN parser and generator that work with plain JS data, with support for TS and node streams
Account's avatar
the most correct and second fastest glob implementation in JavaScript
Account's avatar
Global HTTP/HTTPS proxy configurable using environment variables.
Account's avatar
Implementation of JSON Web Signatures
Account's avatar
node.js library for reading and extraction of ZIP archives
Account's avatar
JavaScript library to parse and build "purl" aka. package URLs. This is a microlibrary implementing the purl spec at https://github.com/package-url
Account's avatar
Properties file reader for Node.js
Account's avatar
The semantic version parser used by npm.
Account's avatar
Standard Subresource Integrity library -- parses, serializes, generates, and verifies integrity metadata according to the SRI spec.
Account's avatar
Formats data into a string table.
Account's avatar
tar for node
Account's avatar
RFC9562 UUIDs
Account's avatar
A convertor between XML text and Javascript object / JSON text.
Account's avatar
An XML builder for node.js
Account's avatar
yargs the modern, pirate-themed, successor to optimist.
Account's avatar
Delightful JavaScript Testing.

Support the repos that depend on this repository

Top contributors

prabhu's profile
prabhu
247 contributions
stevespringett's profile
stevespringett
72 contributions
eoftedal's profile
eoftedal
10 contributions
hubertp's profile
hubertp
7 contributions
candrews's profile
candrews
4 contributions
heubeck's profile
heubeck
3 contributions
jkowalleck's profile
jkowalleck
3 contributions
mikejarrett's profile
mikejarrett
3 contributions
RaineInto's profile
RaineInto
3 contributions
anush-cr's profile
anush-cr
2 contributions

Recent events

Kivach works on the Obyte network, and therefore you can track all donations.

No events yet