An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 2.8% on proxy.golang.org
Top 0.2% dependent packages on proxy.golang.org
Top 0.3% dependent repos on proxy.golang.org
Top 6.8% forks on proxy.golang.org
Top 0.2% docker downloads on proxy.golang.org

proxy.golang.org : github.com/CycloneDX/cyclonedx-go

This example demonstrates how to decode and work with BOMs in CycloneDX format. This example demonstrates how to create and encode a BOM in CycloneDX format.

Registry - Source - Documentation - JSON
purl: pkg:golang/github.com/%21cyclone%21d%21x/cyclonedx-go
Keywords: bill-of-materials , bom , golang , mbom , obom , owasp , saasbom , sbom , software-bill-of-materials , vex
License: Apache-2.0
Latest release: 6 months ago
First release: about 4 years ago
Namespace: github.com/CycloneDX
Dependent packages: 501
Dependent repositories: 520
Stars: 42 on GitHub
Forks: 9 on GitHub
Docker dependents: 641
Docker downloads: 595,787,889
See more repository details: repos.ecosyste.ms
Last synced: 12 days ago

Top 6.6% on proxy.golang.org
github.com/salim-runsafe/syft v1.8.1
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
2 versions - Latest release: 11 months ago - 0 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/intelops/kubviz v1.1.9
Visualize Kubernetes & DevSecOps Workflows. Tracks changes/events real-time across your entire K8...
23 versions - Latest release: 11 months ago - 24 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/paketo-buildpacks/yarn-install-cnb v1.3.3
242 versions - Latest release: 12 months ago
Top 7.3% on proxy.golang.org
github.com/paketo-buildpacks/yarn-install v1.3.3
A Cloud Native Buildpack for Yarn
242 versions - Latest release: 12 months ago - 7 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/cloudfoundry/yarn-cnb v1.3.3
A Cloud Native Buildpack for Yarn
242 versions - Latest release: 12 months ago - 1 dependent repositories - 7 stars on GitHub
github.com/innomotics/cyclonedx-license-resolver v0.1.0
Library to support mapping different types of valid CycloneDX licenses to valid SPDX License-IDs
3 versions - Latest release: 12 months ago - 0 stars on GitHub
Top 6.7% on proxy.golang.org
github.hscsec.cn/derailed/k9s v0.32.5
144 versions - Latest release: 12 months ago
Top 9.2% on proxy.golang.org
github.phpd.cn/aquasecurity/trivy-operator v0.21.3
116 versions - Latest release: 12 months ago
Top 6.8% on proxy.golang.org
github.com/3choBoomer/jfrog-client-go v1.41.1
All go clients for JFrog products
9 versions - Latest release: 12 months ago - 0 stars on GitHub
Top 6.8% on proxy.golang.org
github.com/zhyocean/trivy v0.0.3
3 versions - Latest release: about 1 year ago - 0 stars on GitHub
Top 4.8% on proxy.golang.org
github.com/yaklang/yaklang v1.3.3
A programming language exclusively designed for cybersecurity
214 versions - Latest release: about 1 year ago - 2 dependent packages - 1 dependent repositories - 190 stars on GitHub
Top 7.6% on proxy.golang.org
github.com/initializ-buildpacks/go-build v0.0.1
A Cloud Native Buildpack for compiling Go applications
1 version - Latest release: about 1 year ago - 0 stars on GitHub
Top 9.0% on proxy.golang.org
github.com/marvelution/ext-build-info v1.7.0
24 versions - Latest release: about 1 year ago - 0 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/jerbob92/trivy v0.51.2
Scanner for vulnerabilities in container images, file systems, and Git repositories, as well as f...
142 versions - Latest release: about 1 year ago - 0 stars on GitHub
Top 7.5% on proxy.golang.org
github.phpd.cn/future-architect/vuls v0.25.4
117 versions - Latest release: about 1 year ago
Top 7.6% on proxy.golang.org
github.com/cvedb/cvectl v0.0.1
1 version - Latest release: about 1 year ago - 0 stars on GitHub
Top 9.3% on proxy.golang.org
github.com/project-stacker/sbom v0.0.7
A stacker companion SBOM generator library and tool
7 versions - Latest release: about 1 year ago - 0 stars on GitHub
Top 8.7% on proxy.golang.org
github.com/project-stacker/stacker-bom v0.0.7
7 versions - Latest release: about 1 year ago
github.com/edgebitio/syft v1.4.1
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
200 versions - Latest release: about 1 year ago - 0 stars on GitHub
Top 6.8% on proxy.golang.org
github.com/noyshabtay/jfrog-client-go v1.40.2
All go clients for JFrog products
191 versions - Latest release: about 1 year ago - 0 stars on GitHub
Top 7.4% on proxy.golang.org
github.com/WZHHVY/coder-xray v0.0.2
JFrog XRay Integration
2 versions - Latest release: about 1 year ago - 0 stars on GitHub
Top 7.4% on proxy.golang.org
github.com/wzhhvy/coder-xray v0.0.2
JFrog XRay Integration
2 versions - Latest release: about 1 year ago - 0 stars on GitHub
Top 9.1% on proxy.golang.org
github.com/ossf/criticality_score/v2 v2.0.4
Gives criticality score for an open source project
5 versions - Latest release: about 1 year ago - 1,273 stars on GitHub
Top 8.8% on proxy.golang.org
github.phpd.cn/gatecheckdev/gatecheck v0.5.0
26 versions - Latest release: about 1 year ago
Top 8.4% on proxy.golang.org
github.phpd.cn/interlynk-io/sbomasm v0.1.0
15 versions - Latest release: about 1 year ago
Top 7.5% on proxy.golang.org
git.wxl.best/safedep/vet v1.5.10
1 version - Latest release: about 1 year ago
Top 9.9% on proxy.golang.org
go.mondoo.com/cnspec/v10 v10.12.2
An open source, cloud-native security to protect everything from build to runtime
43 versions - Latest release: about 1 year ago - 270 stars on GitHub
Top 9.9% on proxy.golang.org
go.mondoo.com/cnquery/v10 v10.12.2
open source, cloud-native, graph-based asset inventory
47 versions - Latest release: about 1 year ago - 311 stars on GitHub
Top 9.2% on proxy.golang.org
github.com/mondoohq/cnquery/v10 v10.12.2
open source, cloud-native, graph-based asset inventory
46 versions - Latest release: about 1 year ago - 259 stars on GitHub
Top 7.5% on proxy.golang.org
github.chickoi.com/aquasecurity/trivy-operator v0.19.4
110 versions - Latest release: about 1 year ago
Top 8.0% on proxy.golang.org
github.com/Racer159/jackal v1.0.0
Package main is the entrypoint for the Jackal binary.
2 versions - Latest release: about 1 year ago - 0 stars on GitHub
Top 8.0% on proxy.golang.org
github.com/racer159/jackal v1.0.0
Package main is the entrypoint for the Jackal binary.
129 versions - Latest release: about 1 year ago - 1 stars on GitHub
Top 9.1% on proxy.golang.org
github.ccut.club/future-architect/vuls v0.25.2
115 versions - Latest release: about 1 year ago
Top 8.2% on proxy.golang.org
mmesh.dev/m-node v0.13.5
mmesh-node
33 versions - Latest release: about 1 year ago - 2 stars on GitHub
Top 9.1% on proxy.golang.org
github.phpd.cn/devops-kung-fu/kissbom v0.0.2
2 versions - Latest release: about 1 year ago
github.com/devops-kung-fu/kissbom v0.0.2
Package main is the entry point for the kissbom CLI.
2 versions - Latest release: about 1 year ago - 0 stars on GitHub
Top 9.9% on proxy.golang.org
github.com/aquasecurity/trivy-plugin-referrer v0.3.1
Trivy plugin for OCI referrers
12 versions - Latest release: about 1 year ago - 17 stars on GitHub
Top 9.1% on proxy.golang.org
git.wxl.best/future-architect/vuls v0.25.1
115 versions - Latest release: about 1 year ago
Top 9.2% on proxy.golang.org
github.phpd.cn/chainloop-dev/chainloop v0.75.2
42 versions - Latest release: about 1 year ago
github.com/benjitrapp/syft-fork v1.0.0
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
1 version - Latest release: over 1 year ago - 0 stars on GitHub
github.com/BenjiTrapp/syft-fork v1.0.0
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
1 version - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.1% on proxy.golang.org
github.skymusic.top/anchore/syft v1.0.0
190 versions - Latest release: over 1 year ago
Top 7.0% on proxy.golang.org
github.com/splunk/vault-plugin-secrets-artifactory v0.6.0
vault plugin for artifactory
10 versions - Latest release: over 1 year ago - 8 stars on GitHub
Top 8.6% on proxy.golang.org
github.com/testwill/grype v0.74.7
A vulnerability scanner for container images and filesystems
136 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.3% on proxy.golang.org
github.com/verifa/artifactory-retention v1.1.1
JFrog CLI plugin to facilitate enforcing Artifactory retention policies
9 versions - Latest release: over 1 year ago - 6 stars on GitHub
Top 9.1% on proxy.golang.org
github.com/verifa/rt-retention v1.1.1
JFrog CLI plugin to facilitate enforcing Artifactory retention policies
9 versions - Latest release: over 1 year ago - 6 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/mmesh/m-node v0.12.0
mmesh-node
27 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.1% on proxy.golang.org
github.skymusic.top/aquasecurity/trivy-operator v0.18.5
104 versions - Latest release: over 1 year ago
Top 9.1% on proxy.golang.org
github.imxd.top/aquasecurity/trivy-operator v0.18.5
104 versions - Latest release: over 1 year ago
Top 9.2% on proxy.golang.org
github.com/fazuru/trivy v0.49.1
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositori...
135 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.1% on proxy.golang.org
github.skymusic.top/aquasecurity/trivy v0.49.1
134 versions - Latest release: over 1 year ago
Top 9.3% on proxy.golang.org
github.skymusic.top/future-architect/vuls v0.24.9
111 versions - Latest release: over 1 year ago
Top 8.2% on proxy.golang.org
github.com/ns-kbhat/jfrog-client-go v1.36.1
186 versions - Latest release: over 1 year ago
Top 5.7% on proxy.golang.org
github.com/deepfence/ThreatMapper/deepfence_worker v0.0.0-20240126010313-b6c4f07d7e7b
Open source cloud native security observability platform. Linux, K8s, AWS Fargate and more.
191 versions - Latest release: over 1 year ago - 4,364 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/elastic/cloudbeat v0.0.0-20240125150610-301d31caa941
Analyzing Cloud Security Posture
417 versions - Latest release: over 1 year ago - 19 stars on GitHub
Top 6.7% on proxy.golang.org
github.com/redhat-appstudio/jvm-build-service v0.0.0-20240125022225-00f5a6595c2b
System for rebuilding Java dependencies from source
239 versions - Latest release: over 1 year ago - 1 dependent package - 8 dependent repositories - 3 stars on GitHub
Top 9.7% on proxy.golang.org
github.com/ovh/cds/contrib/integrations/artifactory/artifactory-upload-artifact-plugin v0.0.0-20240124133908-f56fb9fe9444
Enterprise-Grade Continuous Delivery & DevOps Automation Open Source Platform
7 versions - Latest release: over 1 year ago - 4,369 stars on GitHub
Top 9.6% on proxy.golang.org
github.com/ovh/cds/contrib/integrations/artifactory/artifactory-build-info-plugin v0.0.0-20240124133908-f56fb9fe9444
Enterprise-Grade Continuous Delivery & DevOps Automation Open Source Platform
5 versions - Latest release: over 1 year ago - 4,372 stars on GitHub
Top 9.7% on proxy.golang.org
github.com/ovh/cds/contrib/integrations/artifactory/artifactory-download-artifact-plugin v0.0.0-20240124133908-f56fb9fe9444
Enterprise-Grade Continuous Delivery & DevOps Automation Open Source Platform
7 versions - Latest release: over 1 year ago - 4,369 stars on GitHub
Top 6.5% on proxy.golang.org
github.com/vmware-tanzu/cartographer-conventions/samples/dumper-server v0.0.0-20240123193707-6e40bf147c63
Conventions provide a mechanism for platform operators to define cross cutting behavior that is a...
36 versions - Latest release: over 1 year ago - 12 stars on GitHub
Top 6.6% on proxy.golang.org
github.com/vmware-tanzu/cartographer-conventions/samples/convention-server v0.0.0-20240123193707-6e40bf147c63
Conventions provide a mechanism for platform operators to define cross cutting behavior that is a...
36 versions - Latest release: over 1 year ago - 12 stars on GitHub
Top 6.4% on proxy.golang.org
github.com/redhat-appstudio/e2e-tests v0.0.0-20240123131930-a9c9a4ea3d5a
Repository for covering appstudio by e2e tests.
367 versions - Latest release: over 1 year ago - 4 dependent repositories - 10 stars on GitHub
Top 5.8% on proxy.golang.org
github.com/ckotzbauer/sbom-operator v0.0.0-20240121123323-403368f12fb2
Catalogue all images of a Kubernetes cluster to multiple targets with Syft
152 versions - Latest release: over 1 year ago - 155 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/ckotzbauer/vulnerability-operator v0.0.0-20240120095640-993fea8843cd
Scans SBOMs for vulnerabilities with Grype
131 versions - Latest release: over 1 year ago - 71 stars on GitHub
Top 6.7% on proxy.golang.org
github.com/imjasonh/wolfictl v0.1.0
A CLI used to work with the Wolfi OSS project
27 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 6.6% on proxy.golang.org
github.com/vmware-tanzu/cartographer-conventions/samples/spring-convention-server v0.0.0-20240119044809-eb472bab20b4
Conventions provide a mechanism for platform operators to define cross cutting behavior that is a...
35 versions - Latest release: over 1 year ago - 12 stars on GitHub
Top 9.5% on proxy.golang.org
github.com/lucasrod16/exploitlens v0.0.0-20240115233331-9d0aa3259549
A simple, lightweight vulnerability scanner that reports if CVEs are present in the CISA KEV data...
1 version - Latest release: over 1 year ago - 1 stars on GitHub
Top 9.0% on proxy.golang.org
gitlab.com/hoppr/hopup v0.4.0
131 versions - Latest release: over 1 year ago - 0 stars on GitLab.com
Top 9.9% on proxy.golang.org
github.com/initializ-buildpacks/dotnet-core-aspnet-runtime v0.0.0-20240115114646-4e5a400c4213
A Cloud Native Buildpack that installs the ASP.NET Core Runtime
1 version - Latest release: over 1 year ago - 0 stars on GitHub
Top 10.0% on proxy.golang.org
github.com/vmware/carbon-black-adapter-for-harbor v0.0.0-20240112090544-7d5d5ae5db38
Carbon Black Harbor Adapter is a scanner to scan images in Harbor Registry with the help of Carbo...
5 versions - Latest release: over 1 year ago - 8 stars on GitHub
Top 4.8% on proxy.golang.org
github.com/openclarity/kubeclarity/cis_docker_benchmark_scanner v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
46 versions - Latest release: over 1 year ago - 886 stars on GitHub
Top 4.8% on proxy.golang.org
github.com/openclarity/kubeclarity/backend v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
96 versions - Latest release: over 1 year ago - 886 stars on GitHub
Top 2.5% on proxy.golang.org
github.com/openclarity/kubeclarity/shared v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
111 versions - Latest release: over 1 year ago - 7 dependent packages - 1 dependent repositories - 886 stars on GitHub
Top 3.2% on proxy.golang.org
github.com/openclarity/kubeclarity/runtime_scan v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
86 versions - Latest release: over 1 year ago - 1 dependent package - 1 dependent repositories - 886 stars on GitHub
Top 4.6% on proxy.golang.org
github.com/openclarity/kubeclarity/runtime_k8s_scanner v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
61 versions - Latest release: over 1 year ago - 886 stars on GitHub
Top 3.8% on proxy.golang.org
github.com/openclarity/kubeclarity/cli v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
85 versions - Latest release: over 1 year ago - 1 dependent package - 1 dependent repositories - 886 stars on GitHub
Top 7.2% on proxy.golang.org
go.mondoo.com/cnspec/v9 v9.14.0
An open source, cloud-native security to protect everything from build to runtime
57 versions - Latest release: over 1 year ago - 2 dependent packages - 270 stars on GitHub
Top 9.9% on proxy.golang.org
github.com/openclarity/grype-server/grype-server v0.0.0-20240109091301-4b85fc6ec97d
Running Grype scanner as a K8s server
5 versions - Latest release: over 1 year ago - 8 stars on GitHub
Top 9.1% on proxy.golang.org
github.skymusic.top/interlynk-io/sbomasm v0.0.14
14 versions - Latest release: over 1 year ago
Top 7.0% on proxy.golang.org
go.mondoo.com/cnquery/v9 v9.14.0
open source, cloud-native, graph-based asset inventory
57 versions - Latest release: over 1 year ago - 3 dependent packages - 311 stars on GitHub
github.com/khulnasoft/jenkins-pipelines v0.0.0-20240103233833-ea4b19ded2ad
4 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.8% on proxy.golang.org
github.com/relizaio/reliza-cd v0.0.0-20240103162722-bb0b2fe2ddf0
The MIT License (MIT) Copyright (c) 2022-2023 Reliza Incorporated (Reliza (tm), https://reliza.i...
2 versions - Latest release: over 1 year ago - 1 stars on GitHub
Top 9.5% on proxy.golang.org
github.com/kadras-io/spring-boot-conventions/convention-server v0.0.0-20231231113101-104cc4510a68
A Convention Server that defines conventions for Spring Boot workloads based on the Cartographer ...
1 version - Latest release: over 1 year ago - 1 stars on GitHub
Top 9.6% on proxy.golang.org
github.com/chainguard-dev/bomshell v0.2.0
An SBOM query language and associated utilities
2 versions - Latest release: over 1 year ago - 43 stars on GitHub
Top 10.0% on proxy.golang.org
github.com/safedep/cofe v0.0.0-20231227124241-6addaf665ca4
Weaving a network of dependencies. Generate Dependency Graph based on Manifest and Imported Modul...
1 version - Latest release: over 1 year ago - 1 stars on GitHub
github.com/initializ/go-dist v0.0.0-20231222043826-7de5263dfb9a
A Cloud Native Buildpack for Go
1 version - Latest release: over 1 year ago - 0 stars on GitHub
github.com/geekNero/osv-scanner v0.0.0-20231221162111-b631363276c4
Vulnerability scanner written in Go which uses the data provided by https://osv.dev
1 version - Latest release: over 1 year ago - 0 stars on GitHub
Top 10.0% on proxy.golang.org
github.com/chainguard-dev/fixfilter v0.0.0-20231220235846-4c48102a6eed
Filter scanner results by applying data from the Wolfi secdb
1 version - Latest release: over 1 year ago - 2 stars on GitHub
github.com/ksoclabs/kbom v0.2.5
KBOM - Kubernetes Bill of Materials
16 versions - Latest release: over 1 year ago - 3 stars on GitHub
github.com/khulnasoft/tunnel-operator v0.9.2
2 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.2% on proxy.golang.org
github.com/khulnasoft/plugin-validator v0.11.5
41 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.8% on proxy.golang.org
github.com/jhlmco/blip v0.0.0-20231210185552-1a280563735f
Blip, a simple CLI tool to create basic CycloneDX SBOMs for raw artifacts.
1 version - Latest release: over 1 year ago - 1 stars on GitHub
github.com/khulnasoft-lab/tunnel v0.48.0
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositori...
130 versions - Latest release: over 1 year ago - 0 stars on GitHub
github.com/gsoc2/syft v0.98.1
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
180 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.1% on proxy.golang.org
github.imxd.top/devops-kung-fu/kissbom v0.0.1
1 version - Latest release: over 1 year ago
github.com/homksei/jfrog-client-go v1.34.5
All go clients for JFrog products
1 version - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.0% on proxy.golang.org
github.com/khulnasoft/tunnel-plugin-referrer v0.3.0
1 version - Latest release: over 1 year ago - 0 stars on GitHub
github.com/srmish-jfrog/jfrog-cli-core/v2 v2.46.2
151 versions - Latest release: over 1 year ago - 0 stars on GitHub
gitlab.com/tanna.dev/snyk-sbom-export v0.1.1
2 versions - Latest release: over 1 year ago
Top 9.2% on proxy.golang.org
github.skymusic.top/openclarity/vmclarity v0.6.0
6 versions - Latest release: over 1 year ago
Past Dependents
Include Past Dependents

Check this option to include packages that no longer depend on this package in their latest version but previously did.