Top 0.2% dependent packages on proxy.golang.org
Top 0.3% dependent repos on proxy.golang.org
Top 6.8% forks on proxy.golang.org
Top 0.2% docker downloads on proxy.golang.org
proxy.golang.org : github.com/CycloneDX/cyclonedx-go
This example demonstrates how to decode and work with BOMs in CycloneDX format. This example demonstrates how to create and encode a BOM in CycloneDX format.
Registry
-
Source
- Documentation
- JSON
purl: pkg:golang/github.com/%21cyclone%21d%21x/cyclonedx-go
Keywords:
bill-of-materials
, bom
, golang
, mbom
, obom
, owasp
, saasbom
, sbom
, software-bill-of-materials
, vex
License: Apache-2.0
Latest release: 6 months ago
First release: about 4 years ago
Namespace: github.com/CycloneDX
Dependent packages: 501
Dependent repositories: 520
Stars: 42 on GitHub
Forks: 9 on GitHub
Docker dependents: 641
Docker downloads: 595,787,889
See more repository details: repos.ecosyste.ms
Last synced: 12 days ago
github.com/salim-runsafe/syft v1.8.1
CLI tool and library for generating a Software Bill of Materials from container images and filesy...2 versions - Latest release: 11 months ago - 0 stars on GitHub
github.com/intelops/kubviz v1.1.9
Visualize Kubernetes & DevSecOps Workflows. Tracks changes/events real-time across your entire K8...23 versions - Latest release: 11 months ago - 24 stars on GitHub
github.com/paketo-buildpacks/yarn-install-cnb v1.3.3
242 versions - Latest release: 12 months agogithub.com/paketo-buildpacks/yarn-install v1.3.3
A Cloud Native Buildpack for Yarn242 versions - Latest release: 12 months ago - 7 stars on GitHub
github.com/cloudfoundry/yarn-cnb v1.3.3
A Cloud Native Buildpack for Yarn242 versions - Latest release: 12 months ago - 1 dependent repositories - 7 stars on GitHub
github.com/innomotics/cyclonedx-license-resolver v0.1.0
Library to support mapping different types of valid CycloneDX licenses to valid SPDX License-IDs3 versions - Latest release: 12 months ago - 0 stars on GitHub
github.hscsec.cn/derailed/k9s v0.32.5
144 versions - Latest release: 12 months agogithub.phpd.cn/aquasecurity/trivy-operator v0.21.3
116 versions - Latest release: 12 months agogithub.com/3choBoomer/jfrog-client-go v1.41.1
All go clients for JFrog products9 versions - Latest release: 12 months ago - 0 stars on GitHub
github.com/zhyocean/trivy v0.0.3
3 versions - Latest release: about 1 year ago - 0 stars on GitHubgithub.com/yaklang/yaklang v1.3.3
A programming language exclusively designed for cybersecurity214 versions - Latest release: about 1 year ago - 2 dependent packages - 1 dependent repositories - 190 stars on GitHub
github.com/initializ-buildpacks/go-build v0.0.1
A Cloud Native Buildpack for compiling Go applications1 version - Latest release: about 1 year ago - 0 stars on GitHub
github.com/marvelution/ext-build-info v1.7.0
24 versions - Latest release: about 1 year ago - 0 stars on GitHubgithub.com/jerbob92/trivy v0.51.2
Scanner for vulnerabilities in container images, file systems, and Git repositories, as well as f...142 versions - Latest release: about 1 year ago - 0 stars on GitHub
github.phpd.cn/future-architect/vuls v0.25.4
117 versions - Latest release: about 1 year agogithub.com/cvedb/cvectl v0.0.1
1 version - Latest release: about 1 year ago - 0 stars on GitHubgithub.com/project-stacker/sbom v0.0.7
A stacker companion SBOM generator library and tool7 versions - Latest release: about 1 year ago - 0 stars on GitHub
github.com/project-stacker/stacker-bom v0.0.7
7 versions - Latest release: about 1 year agogithub.com/edgebitio/syft v1.4.1
CLI tool and library for generating a Software Bill of Materials from container images and filesy...200 versions - Latest release: about 1 year ago - 0 stars on GitHub
github.com/noyshabtay/jfrog-client-go v1.40.2
All go clients for JFrog products191 versions - Latest release: about 1 year ago - 0 stars on GitHub
github.com/WZHHVY/coder-xray v0.0.2
JFrog XRay Integration2 versions - Latest release: about 1 year ago - 0 stars on GitHub
github.com/wzhhvy/coder-xray v0.0.2
JFrog XRay Integration2 versions - Latest release: about 1 year ago - 0 stars on GitHub
github.com/ossf/criticality_score/v2 v2.0.4
Gives criticality score for an open source project5 versions - Latest release: about 1 year ago - 1,273 stars on GitHub
github.phpd.cn/gatecheckdev/gatecheck v0.5.0
26 versions - Latest release: about 1 year agogithub.phpd.cn/interlynk-io/sbomasm v0.1.0
15 versions - Latest release: about 1 year agogit.wxl.best/safedep/vet v1.5.10
1 version - Latest release: about 1 year agogo.mondoo.com/cnspec/v10 v10.12.2
An open source, cloud-native security to protect everything from build to runtime43 versions - Latest release: about 1 year ago - 270 stars on GitHub
go.mondoo.com/cnquery/v10 v10.12.2
open source, cloud-native, graph-based asset inventory47 versions - Latest release: about 1 year ago - 311 stars on GitHub
github.com/mondoohq/cnquery/v10 v10.12.2
open source, cloud-native, graph-based asset inventory46 versions - Latest release: about 1 year ago - 259 stars on GitHub
github.chickoi.com/aquasecurity/trivy-operator v0.19.4
110 versions - Latest release: about 1 year agogithub.com/Racer159/jackal v1.0.0
Package main is the entrypoint for the Jackal binary.2 versions - Latest release: about 1 year ago - 0 stars on GitHub
github.com/racer159/jackal v1.0.0
Package main is the entrypoint for the Jackal binary.129 versions - Latest release: about 1 year ago - 1 stars on GitHub
github.ccut.club/future-architect/vuls v0.25.2
115 versions - Latest release: about 1 year agommesh.dev/m-node v0.13.5
mmesh-node33 versions - Latest release: about 1 year ago - 2 stars on GitHub
github.phpd.cn/devops-kung-fu/kissbom v0.0.2
2 versions - Latest release: about 1 year agogithub.com/devops-kung-fu/kissbom v0.0.2
Package main is the entry point for the kissbom CLI.2 versions - Latest release: about 1 year ago - 0 stars on GitHub
github.com/aquasecurity/trivy-plugin-referrer v0.3.1
Trivy plugin for OCI referrers12 versions - Latest release: about 1 year ago - 17 stars on GitHub
git.wxl.best/future-architect/vuls v0.25.1
115 versions - Latest release: about 1 year agogithub.phpd.cn/chainloop-dev/chainloop v0.75.2
42 versions - Latest release: about 1 year agogithub.com/benjitrapp/syft-fork v1.0.0
CLI tool and library for generating a Software Bill of Materials from container images and filesy...1 version - Latest release: over 1 year ago - 0 stars on GitHub
github.com/BenjiTrapp/syft-fork v1.0.0
CLI tool and library for generating a Software Bill of Materials from container images and filesy...1 version - Latest release: over 1 year ago - 0 stars on GitHub
github.skymusic.top/anchore/syft v1.0.0
190 versions - Latest release: over 1 year agogithub.com/splunk/vault-plugin-secrets-artifactory v0.6.0
vault plugin for artifactory10 versions - Latest release: over 1 year ago - 8 stars on GitHub
github.com/testwill/grype v0.74.7
A vulnerability scanner for container images and filesystems136 versions - Latest release: over 1 year ago - 0 stars on GitHub
github.com/verifa/artifactory-retention v1.1.1
JFrog CLI plugin to facilitate enforcing Artifactory retention policies9 versions - Latest release: over 1 year ago - 6 stars on GitHub
github.com/verifa/rt-retention v1.1.1
JFrog CLI plugin to facilitate enforcing Artifactory retention policies9 versions - Latest release: over 1 year ago - 6 stars on GitHub
github.com/mmesh/m-node v0.12.0
mmesh-node27 versions - Latest release: over 1 year ago - 0 stars on GitHub
github.skymusic.top/aquasecurity/trivy-operator v0.18.5
104 versions - Latest release: over 1 year agogithub.imxd.top/aquasecurity/trivy-operator v0.18.5
104 versions - Latest release: over 1 year agogithub.com/fazuru/trivy v0.49.1
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositori...135 versions - Latest release: over 1 year ago - 0 stars on GitHub
github.skymusic.top/aquasecurity/trivy v0.49.1
134 versions - Latest release: over 1 year agogithub.skymusic.top/future-architect/vuls v0.24.9
111 versions - Latest release: over 1 year agogithub.com/ns-kbhat/jfrog-client-go v1.36.1
186 versions - Latest release: over 1 year agogithub.com/deepfence/ThreatMapper/deepfence_worker v0.0.0-20240126010313-b6c4f07d7e7b
Open source cloud native security observability platform. Linux, K8s, AWS Fargate and more.191 versions - Latest release: over 1 year ago - 4,364 stars on GitHub
github.com/elastic/cloudbeat v0.0.0-20240125150610-301d31caa941
Analyzing Cloud Security Posture417 versions - Latest release: over 1 year ago - 19 stars on GitHub
github.com/redhat-appstudio/jvm-build-service v0.0.0-20240125022225-00f5a6595c2b
System for rebuilding Java dependencies from source239 versions - Latest release: over 1 year ago - 1 dependent package - 8 dependent repositories - 3 stars on GitHub
github.com/ovh/cds/contrib/integrations/artifactory/artifactory-upload-artifact-plugin v0.0.0-20240124133908-f56fb9fe9444
Enterprise-Grade Continuous Delivery & DevOps Automation Open Source Platform7 versions - Latest release: over 1 year ago - 4,369 stars on GitHub
github.com/ovh/cds/contrib/integrations/artifactory/artifactory-build-info-plugin v0.0.0-20240124133908-f56fb9fe9444
Enterprise-Grade Continuous Delivery & DevOps Automation Open Source Platform5 versions - Latest release: over 1 year ago - 4,372 stars on GitHub
github.com/ovh/cds/contrib/integrations/artifactory/artifactory-download-artifact-plugin v0.0.0-20240124133908-f56fb9fe9444
Enterprise-Grade Continuous Delivery & DevOps Automation Open Source Platform7 versions - Latest release: over 1 year ago - 4,369 stars on GitHub
github.com/vmware-tanzu/cartographer-conventions/samples/dumper-server v0.0.0-20240123193707-6e40bf147c63
Conventions provide a mechanism for platform operators to define cross cutting behavior that is a...36 versions - Latest release: over 1 year ago - 12 stars on GitHub
github.com/vmware-tanzu/cartographer-conventions/samples/convention-server v0.0.0-20240123193707-6e40bf147c63
Conventions provide a mechanism for platform operators to define cross cutting behavior that is a...36 versions - Latest release: over 1 year ago - 12 stars on GitHub
github.com/redhat-appstudio/e2e-tests v0.0.0-20240123131930-a9c9a4ea3d5a
Repository for covering appstudio by e2e tests.367 versions - Latest release: over 1 year ago - 4 dependent repositories - 10 stars on GitHub
github.com/ckotzbauer/sbom-operator v0.0.0-20240121123323-403368f12fb2
Catalogue all images of a Kubernetes cluster to multiple targets with Syft152 versions - Latest release: over 1 year ago - 155 stars on GitHub
github.com/ckotzbauer/vulnerability-operator v0.0.0-20240120095640-993fea8843cd
Scans SBOMs for vulnerabilities with Grype131 versions - Latest release: over 1 year ago - 71 stars on GitHub
github.com/imjasonh/wolfictl v0.1.0
A CLI used to work with the Wolfi OSS project27 versions - Latest release: over 1 year ago - 0 stars on GitHub
github.com/vmware-tanzu/cartographer-conventions/samples/spring-convention-server v0.0.0-20240119044809-eb472bab20b4
Conventions provide a mechanism for platform operators to define cross cutting behavior that is a...35 versions - Latest release: over 1 year ago - 12 stars on GitHub
github.com/lucasrod16/exploitlens v0.0.0-20240115233331-9d0aa3259549
A simple, lightweight vulnerability scanner that reports if CVEs are present in the CISA KEV data...1 version - Latest release: over 1 year ago - 1 stars on GitHub
gitlab.com/hoppr/hopup v0.4.0
131 versions - Latest release: over 1 year ago - 0 stars on GitLab.comgithub.com/initializ-buildpacks/dotnet-core-aspnet-runtime v0.0.0-20240115114646-4e5a400c4213
A Cloud Native Buildpack that installs the ASP.NET Core Runtime1 version - Latest release: over 1 year ago - 0 stars on GitHub
github.com/vmware/carbon-black-adapter-for-harbor v0.0.0-20240112090544-7d5d5ae5db38
Carbon Black Harbor Adapter is a scanner to scan images in Harbor Registry with the help of Carbo...5 versions - Latest release: over 1 year ago - 8 stars on GitHub
github.com/openclarity/kubeclarity/cis_docker_benchmark_scanner v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...46 versions - Latest release: over 1 year ago - 886 stars on GitHub
github.com/openclarity/kubeclarity/backend v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...96 versions - Latest release: over 1 year ago - 886 stars on GitHub
github.com/openclarity/kubeclarity/shared v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...111 versions - Latest release: over 1 year ago - 7 dependent packages - 1 dependent repositories - 886 stars on GitHub
github.com/openclarity/kubeclarity/runtime_scan v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...86 versions - Latest release: over 1 year ago - 1 dependent package - 1 dependent repositories - 886 stars on GitHub
github.com/openclarity/kubeclarity/runtime_k8s_scanner v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...61 versions - Latest release: over 1 year ago - 886 stars on GitHub
github.com/openclarity/kubeclarity/cli v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...85 versions - Latest release: over 1 year ago - 1 dependent package - 1 dependent repositories - 886 stars on GitHub
go.mondoo.com/cnspec/v9 v9.14.0
An open source, cloud-native security to protect everything from build to runtime57 versions - Latest release: over 1 year ago - 2 dependent packages - 270 stars on GitHub
github.com/openclarity/grype-server/grype-server v0.0.0-20240109091301-4b85fc6ec97d
Running Grype scanner as a K8s server5 versions - Latest release: over 1 year ago - 8 stars on GitHub
github.skymusic.top/interlynk-io/sbomasm v0.0.14
14 versions - Latest release: over 1 year agogo.mondoo.com/cnquery/v9 v9.14.0
open source, cloud-native, graph-based asset inventory57 versions - Latest release: over 1 year ago - 3 dependent packages - 311 stars on GitHub
github.com/khulnasoft/jenkins-pipelines v0.0.0-20240103233833-ea4b19ded2ad
4 versions - Latest release: over 1 year ago - 0 stars on GitHubgithub.com/relizaio/reliza-cd v0.0.0-20240103162722-bb0b2fe2ddf0
The MIT License (MIT) Copyright (c) 2022-2023 Reliza Incorporated (Reliza (tm), https://reliza.i...2 versions - Latest release: over 1 year ago - 1 stars on GitHub
github.com/kadras-io/spring-boot-conventions/convention-server v0.0.0-20231231113101-104cc4510a68
A Convention Server that defines conventions for Spring Boot workloads based on the Cartographer ...1 version - Latest release: over 1 year ago - 1 stars on GitHub
github.com/chainguard-dev/bomshell v0.2.0
An SBOM query language and associated utilities2 versions - Latest release: over 1 year ago - 43 stars on GitHub
github.com/safedep/cofe v0.0.0-20231227124241-6addaf665ca4
Weaving a network of dependencies. Generate Dependency Graph based on Manifest and Imported Modul...1 version - Latest release: over 1 year ago - 1 stars on GitHub
github.com/initializ/go-dist v0.0.0-20231222043826-7de5263dfb9a
A Cloud Native Buildpack for Go1 version - Latest release: over 1 year ago - 0 stars on GitHub
github.com/geekNero/osv-scanner v0.0.0-20231221162111-b631363276c4
Vulnerability scanner written in Go which uses the data provided by https://osv.dev1 version - Latest release: over 1 year ago - 0 stars on GitHub
github.com/chainguard-dev/fixfilter v0.0.0-20231220235846-4c48102a6eed
Filter scanner results by applying data from the Wolfi secdb1 version - Latest release: over 1 year ago - 2 stars on GitHub
github.com/ksoclabs/kbom v0.2.5
KBOM - Kubernetes Bill of Materials16 versions - Latest release: over 1 year ago - 3 stars on GitHub
github.com/khulnasoft/tunnel-operator v0.9.2
2 versions - Latest release: over 1 year ago - 0 stars on GitHubgithub.com/khulnasoft/plugin-validator v0.11.5
41 versions - Latest release: over 1 year ago - 0 stars on GitHubgithub.com/jhlmco/blip v0.0.0-20231210185552-1a280563735f
Blip, a simple CLI tool to create basic CycloneDX SBOMs for raw artifacts.1 version - Latest release: over 1 year ago - 1 stars on GitHub
github.com/khulnasoft-lab/tunnel v0.48.0
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositori...130 versions - Latest release: over 1 year ago - 0 stars on GitHub
github.com/gsoc2/syft v0.98.1
CLI tool and library for generating a Software Bill of Materials from container images and filesy...180 versions - Latest release: over 1 year ago - 0 stars on GitHub
github.imxd.top/devops-kung-fu/kissbom v0.0.1
1 version - Latest release: over 1 year agogithub.com/homksei/jfrog-client-go v1.34.5
All go clients for JFrog products1 version - Latest release: over 1 year ago - 0 stars on GitHub
github.com/khulnasoft/tunnel-plugin-referrer v0.3.0
1 version - Latest release: over 1 year ago - 0 stars on GitHubgithub.com/srmish-jfrog/jfrog-cli-core/v2 v2.46.2
151 versions - Latest release: over 1 year ago - 0 stars on GitHubgitlab.com/tanna.dev/snyk-sbom-export v0.1.1
2 versions - Latest release: over 1 year agogithub.skymusic.top/openclarity/vmclarity v0.6.0
6 versions - Latest release: over 1 year agoCheck this option to include packages that no longer depend on this package in their latest version but previously did.