An open API service providing repository metadata for many open source software ecosystems.

Topic: "purl"

DependencyTrack/dependency-track

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

Language: Java - Size: 103 MB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 3,071 - Forks: 632

aboutcode-org/scancode-toolkit

:mag: ScanCode detects licenses, copyrights, dependencies by "scanning code" ... to discover and inventory open source and third-party packages used in your code. Sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase, the Google Summer of Code, Azure credits, nexB and others generous sponsors!

Language: Python - Size: 668 MB - Last synced at: 4 days ago - Pushed at: 8 days ago - Stars: 2,285 - Forks: 595

package-url/purl-spec

A minimal specification for purl aka. a package "mostly universal" URL, join the discussion at https://gitter.im/package-url/Lobby

Size: 425 KB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 777 - Forks: 184

CycloneDX/cdxgen

Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server. GPT: https://chatgpt.com/g/g-673bfeb4037481919be8a2cd1bf868d2-cdxgen

Language: JavaScript - Size: 25.9 MB - Last synced at: 2 days ago - Pushed at: 2 days ago - Stars: 701 - Forks: 188

aboutcode-org/vulnerablecode

A free and open vulnerabilities database and the packages they impact. And the tools to aggregate and correlate these vulnerabilities. Sponsored by NLnet https://nlnet.nl/project/vulnerabilitydatabase/ for https://www.aboutcode.org/ Chat at https://gitter.im/aboutcode-org/vulnerablecode Docs at https://vulnerablecode.readthedocs.org/

Language: Python - Size: 28.7 MB - Last synced at: 9 days ago - Pushed at: 9 days ago - Stars: 584 - Forks: 231

CycloneDX/cyclonedx-cli

CycloneDX CLI tool for SBOM analysis, merging, diffs and format conversions.

Language: C# - Size: 637 KB - Last synced at: 14 days ago - Pushed at: 6 months ago - Stars: 363 - Forks: 65

CycloneDX/cyclonedx-maven-plugin

Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects

Language: Java - Size: 2.32 MB - Last synced at: 8 days ago - Pushed at: about 1 month ago - Stars: 323 - Forks: 89

CycloneDX/cyclonedx-python

CycloneDX Software Bill of Materials (SBOM) generator for Python projects and environments

Language: Python - Size: 3.93 MB - Last synced at: 3 days ago - Pushed at: 4 days ago - Stars: 286 - Forks: 75

CycloneDX/cyclonedx-dotnet

Creates CycloneDX Software Bill of Materials (SBOM) from .NET Projects

Language: C# - Size: 2.75 MB - Last synced at: 8 days ago - Pushed at: about 1 month ago - Stars: 217 - Forks: 100

CycloneDX/cyclonedx-gradle-plugin

Creates CycloneDX Software Bill of Materials (SBOM) from Gradle projects

Language: Java - Size: 1.08 MB - Last synced at: 14 days ago - Pushed at: 14 days ago - Stars: 187 - Forks: 81

tiiuae/sbomnix

A suite of utilities to help with software supply chain challenges on nix targets

Language: Python - Size: 2.66 MB - Last synced at: 13 days ago - Pushed at: 18 days ago - Stars: 172 - Forks: 27

aboutcode-org/scancode.io

ScanCode.io is a server to script and automate software composition analysis pipelines with ScanPipe pipelines. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ Google Summer of Code, nexB and others generous sponsors!

Language: Python - Size: 68.4 MB - Last synced at: 14 days ago - Pushed at: 15 days ago - Stars: 133 - Forks: 109

CycloneDX/cyclonedx-rust-cargo

Creates CycloneDX Software Bill of Materials (SBOM) from Rust (Cargo) projects

Language: Rust - Size: 2.51 MB - Last synced at: 15 days ago - Pushed at: 15 days ago - Stars: 128 - Forks: 50

AppThreat/vulnerability-db

Vulnerability database and package search for sources such as Linux, OSV, NVD, GitHub and npm. Powered by sqlite, CVE 5.1, purl, and vers.

Language: Python - Size: 6.5 MB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 120 - Forks: 23

CycloneDX/sbom-utility

Utility that provides an API platform for validating, querying and managing BOM data

Language: Go - Size: 9.92 MB - Last synced at: 11 days ago - Pushed at: 14 days ago - Stars: 111 - Forks: 16

CycloneDX/cyclonedx-core-java

CycloneDX SBOM Model and Utils for Creating and Validating BOMs

Language: Java - Size: 23 MB - Last synced at: 8 days ago - Pushed at: 11 days ago - Stars: 93 - Forks: 72

CycloneDX/cyclonedx-python-lib

Python implementation of OWASP CycloneDX

Language: Python - Size: 3.52 MB - Last synced at: 3 days ago - Pushed at: 4 days ago - Stars: 82 - Forks: 50

nikstur/bombon

Nix CycloneDX Software Bills of Materials (SBOMs)

Language: Rust - Size: 393 KB - Last synced at: 11 days ago - Pushed at: 3 months ago - Stars: 81 - Forks: 11

package-url/packageurl-python

Python implementation of the package url spec. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ , the Google Summer of Code, nexB and other generous sponsors.

Language: Python - Size: 16 MB - Last synced at: about 11 hours ago - Pushed at: about 12 hours ago - Stars: 74 - Forks: 48

CycloneDX/cyclonedx-php-composer

Create CycloneDX Software Bill of Materials (SBOM) from PHP Composer projects

Language: PHP - Size: 1.41 MB - Last synced at: 13 days ago - Pushed at: 24 days ago - Stars: 65 - Forks: 7

package-url/packageurl-go

Go implementation of the package url spec

Language: Go - Size: 101 KB - Last synced at: 8 days ago - Pushed at: 3 months ago - Stars: 61 - Forks: 51

aboutcode-org/purldb

Tools to create and expose a database of purls (Package URLs). This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ and nexB for https://www.aboutcode.org/ Chat is at https://gitter.im/aboutcode-org/discuss

Language: HTML - Size: 23.2 MB - Last synced at: 7 days ago - Pushed at: 7 days ago - Stars: 45 - Forks: 34

package-url/packageurl-java

Java/JVM implementation of the package url spec

Language: Java - Size: 342 KB - Last synced at: 4 days ago - Pushed at: 9 days ago - Stars: 41 - Forks: 19

kube-security/orca

This repository contains the container image scanning tool ORCA

Language: Python - Size: 489 KB - Last synced at: 21 days ago - Pushed at: 21 days ago - Stars: 36 - Forks: 0

CycloneDX/cyclonedx-web-tool

A web based tool for working with CycloneDX BOMs

Language: HTML - Size: 115 MB - Last synced at: 3 months ago - Pushed at: 10 months ago - Stars: 36 - Forks: 6

aboutcode-org/univers

Parse and compare all the package versions and all the ranges. From debian, npm, pypi, ruby and more. Process all the version range specs and expressions. This project is sponsored by an NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ , the Google Summer of Code, nexB and others generous sponsors!

Language: Python - Size: 3.74 MB - Last synced at: 19 days ago - Pushed at: 8 months ago - Stars: 35 - Forks: 17

VexStore/fatbom

fatbom (Fat Bill Of Materials) is a tool which combines the SBOM generated by various tools into one fat SBOM. Thus leveraging each tool's strength.

Language: Go - Size: 134 KB - Last synced at: about 1 month ago - Pushed at: over 2 years ago - Stars: 32 - Forks: 0

aboutcode-org/dejacode

Automate open source license compliance and ensure software supply chain integrity

Language: Python - Size: 313 MB - Last synced at: 1 day ago - Pushed at: 1 day ago - Stars: 31 - Forks: 14

package-url/packageurl-js

JavaScript implementation of the package url spec

Language: JavaScript - Size: 223 KB - Last synced at: 14 days ago - Pushed at: 3 months ago - Stars: 28 - Forks: 24

CycloneDX/cyclonedx-ruby-gem

Creates CycloneDX Software Bill of Materials (SBOM) from Ruby projects

Language: Ruby - Size: 85.9 KB - Last synced at: about 21 hours ago - Pushed at: over 1 year ago - Stars: 27 - Forks: 18

CycloneDX/cyclonedx-webpack-plugin

Generate CycloneDX Software Bill of Materials (SBOM) from webpack bundles at compile time.

Language: JavaScript - Size: 7.16 MB - Last synced at: 4 days ago - Pushed at: 6 days ago - Stars: 26 - Forks: 9

CycloneDX/cyclonedx-conan 📦

Creates CycloneDX Software Bill of Materials (SBOM) documents for C/C++ projects using Conan

Language: Python - Size: 108 KB - Last synced at: 10 days ago - Pushed at: over 1 year ago - Stars: 26 - Forks: 15

package-url/packageurl-swift

Swift implementation of the package url spec

Language: Swift - Size: 10.7 KB - Last synced at: about 2 months ago - Pushed at: almost 4 years ago - Stars: 23 - Forks: 1

package-url/packageurl-dotnet

.NET implementation of the package url spec

Language: C# - Size: 50.8 KB - Last synced at: 1 day ago - Pushed at: almost 2 years ago - Stars: 16 - Forks: 12

louib/nix2sbom

nix2sbom extracts the CycloneDX and SPDX SBOM (Software Bill of Materials) from a Nix derivation

Language: Rust - Size: 285 KB - Last synced at: 2 months ago - Pushed at: 5 months ago - Stars: 12 - Forks: 1

phylum-dev/purl

Package URL implementation for Rust

Language: Rust - Size: 104 KB - Last synced at: 28 days ago - Pushed at: 3 months ago - Stars: 11 - Forks: 0

scm-rs/packageurl.rs

Rust implementation of the Package URL specification.

Language: Rust - Size: 147 KB - Last synced at: 4 days ago - Pushed at: 29 days ago - Stars: 9 - Forks: 10

package-url/packageurl-php

PHP implementation of the package url spec

Language: PHP - Size: 271 KB - Last synced at: 12 days ago - Pushed at: about 2 months ago - Stars: 9 - Forks: 4

CycloneDX/cyclonedx-authoring-tool

An experimental user interface for manually creating, editing, and viewing CycloneDX SBOMs

Language: Vue - Size: 78.1 KB - Last synced at: about 2 months ago - Pushed at: over 2 years ago - Stars: 8 - Forks: 3

package-url/purl-swid-generator-ui

A simple webapp that provides guidance on and creates Package URLs of type "swid"

Language: Vue - Size: 844 KB - Last synced at: about 2 months ago - Pushed at: 4 months ago - Stars: 7 - Forks: 1

erlef/purl

Implementation of the purl (package url) specification.

Language: Elixir - Size: 148 KB - Last synced at: 3 days ago - Pushed at: 4 days ago - Stars: 5 - Forks: 2

Malwarebytes/ghas-cli

CLI utility to deploy at scale and interact with GitHub Advanced Security

Language: Python - Size: 439 KB - Last synced at: 3 days ago - Pushed at: 4 days ago - Stars: 5 - Forks: 1

phylum-dev/purl-survey

Package URL implementation test harness

Language: Python - Size: 67.4 KB - Last synced at: 22 days ago - Pushed at: 3 months ago - Stars: 4 - Forks: 0

aboutcode-org/purldb-data

A dataset of purl for offline lookup and verification usage. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ and nexB for https://www.aboutcode.org/ Chat is at https://gitter.im/aboutcode-org/discuss

Size: 129 MB - Last synced at: 3 months ago - Pushed at: 10 months ago - Stars: 4 - Forks: 1

aboutcode-org/vulnerablecode-purl2cpe Fork of pombredanne/purl2cpe

This repo contains a dump of mappings of NVD's CPEs to purls (package URLs) derived from the VulnerableCode database. package urls created by using VulnerableCode's data. This project is sponsored by NLnet project https://nlnet.nl/project/vulnerabilitydatabase/ and nexB for https://www.aboutcode.org/ Chat at https://gitter.im/aboutcode-org/discuss

Size: 12.3 MB - Last synced at: 10 months ago - Pushed at: 10 months ago - Stars: 4 - Forks: 1

Ecma-TC54/tc54.org

Ecma TC54 Website

Language: Astro - Size: 1.68 MB - Last synced at: about 1 month ago - Pushed at: about 1 month ago - Stars: 3 - Forks: 1

CycloneDX/cyclonedx-nuget 📦

Creates CycloneDX Software Bill-of-Materials (SBoM) from NuGet projects

Language: Java - Size: 75.2 KB - Last synced at: 3 months ago - Pushed at: about 6 years ago - Stars: 2 - Forks: 1

fabiante/persurl

Modern PURL service for maintaining persistent URLs

Language: Go - Size: 266 KB - Last synced at: 2 days ago - Pushed at: 8 months ago - Stars: 1 - Forks: 0

vBarbaros/pypurl

A lightweight module for package URL (PURL) creation / handling

Language: Python - Size: 41 KB - Last synced at: about 2 years ago - Pushed at: over 3 years ago - Stars: 1 - Forks: 1

th3-j0k3r/DepConfuse

tool for checking potential dependency confusion

Language: Go - Size: 90.8 KB - Last synced at: 20 days ago - Pushed at: 20 days ago - Stars: 0 - Forks: 0

Ecma-TC54/ECMA-xxx-PURL

This repository will be renamed once an ECMA identifier is assigned to the standard.

Language: HTML - Size: 303 KB - Last synced at: 6 months ago - Pushed at: 6 months ago - Stars: 0 - Forks: 0

ethosce/drupal-group_purl

Provides a Persistent URL plugin for Group.

Language: PHP - Size: 34.2 KB - Last synced at: 11 days ago - Pushed at: over 2 years ago - Stars: 0 - Forks: 0

yasielpv/pkp-purl-pubid

A persistent uniform resource locator (PURL) is a uniform resource locator (URL) (i.e., location-based uniform resource identifier or URI) that is used to redirect to the location of the requested web resource. PURLs redirect HTTP clients using HTTP status codes.

Language: Smarty - Size: 24.4 KB - Last synced at: over 1 year ago - Pushed at: almost 4 years ago - Stars: 0 - Forks: 0