An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 5.8% on proxy.golang.org
Top 0.7% dependent packages on proxy.golang.org
Top 2.3% dependent repos on proxy.golang.org
Top 2.0% docker downloads on proxy.golang.org

proxy.golang.org : github.com/github/go-spdx/v2

Golang implementation of a checker for determining if an SPDX ID satisfies an SPDX Expression.

Registry - Source - Documentation - JSON
purl: pkg:golang/github.com/github/go-spdx/v2
License: MIT
Latest release: about 1 month ago
First release: over 2 years ago
Namespace: github.com/github/go-spdx
Dependent packages: 92
Dependent repositories: 5
Stars: 9 on GitHub
Forks: 1 on GitHub
Docker dependents: 68
Docker downloads: 12,861,323
See more repository details: repos.ecosyste.ms
Last synced: 5 days ago

Top 1.1% on proxy.golang.org
github.com/anchore/grype v0.94.0
A vulnerability scanner for container images and filesystems
175 versions - Latest release: 4 days ago - 50 dependent packages - 14 dependent repositories - 5,389 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/anchore/imgbom v1.27.1
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
233 versions - Latest release: 5 days ago - 5,408 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/chainguard-dev/melange v0.26.7
build APKs from source code
143 versions - Latest release: 10 days ago - 309 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/interlynk-io/sbomqs v1.0.7
SBOM quality score - Quality metrics for your sboms
51 versions - Latest release: 10 days ago - 38 stars on GitHub
Top 7.1% on proxy.golang.org
github.com/armosec/armoapi-go v0.0.598
590 versions - Latest release: 12 days ago - 38 dependent packages - 68 dependent repositories - 0 stars on GitHub
github.com/defenseunicorns/uds-cli v0.27.6
Package main is the entrypoint for the uds binary.
70 versions - Latest release: 13 days ago - 21 stars on GitHub
github.com/kubescape/node-agent v0.2.343
181 versions - Latest release: 18 days ago - 6 stars on GitHub
Top 6.3% on proxy.golang.org
github.com/wolfi-dev/wolfictl v0.37.3
A CLI used to work with the Wolfi OSS project
285 versions - Latest release: 19 days ago - 1 dependent repositories - 14 stars on GitHub
Top 8.5% on proxy.golang.org
github.com/vinted/sbomsftw v0.30.0
Copyright © 2022 InfoSec Team <[email protected]> Permission is hereby granted, free of charge,...
23 versions - Latest release: 20 days ago
Top 8.5% on proxy.golang.org
github.com/vinted/software-assets v0.30.0
Copyright © 2022 InfoSec Team <[email protected]> Permission is hereby granted, free of charge,...
23 versions - Latest release: 20 days ago
Top 7.7% on proxy.golang.org
github.com/arkeros/syft v1.26.1
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
3 versions - Latest release: 22 days ago - 0 stars on GitHub
Top 7.4% on proxy.golang.org
github.com/vulncheck-oss/cli v0.9.2
VulnCheck's official command line tool
45 versions - Latest release: 24 days ago - 0 stars on GitHub
Top 3.8% on proxy.golang.org
github.com/defenseunicorns/zarf v0.55.5
Package main is the entrypoint for the Zarf binary.
169 versions - Latest release: 25 days ago - 6 dependent packages - 1 dependent repositories - 589 stars on GitHub
Top 6.6% on proxy.golang.org
github.com/kubescape/kubevuln v0.3.78
Kubevuln is an in-cluster component of the Kubescape security platform. It scans container images...
86 versions - Latest release: 26 days ago - 7 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/kubescape/operator v0.2.90
Operator is an in-cluster component of the Kubescape security platform. It allows clients to conn...
114 versions - Latest release: 27 days ago - 6 stars on GitHub
Top 6.8% on proxy.golang.org
github.com/kubescape/kontroller v0.2.90
Operator is an in-cluster component of the Kubescape security platform. It allows clients to conn...
114 versions - Latest release: 27 days ago - 6 stars on GitHub
Top 7.0% on proxy.golang.org
github.com/docker/buildkit-syft-scanner v1.7.0
BuildKit Syft scanner
15 versions - Latest release: 28 days ago - 1 dependent package - 12 stars on GitHub
Top 3.1% on proxy.golang.org
chainguard.dev/melange v0.25.1
build APKs from source code
135 versions - Latest release: about 1 month ago - 3 dependent packages - 3 dependent repositories - 382 stars on GitHub
github.com/kubescape/synchronizer v0.0.110
68 versions - Latest release: about 1 month ago - 1 dependent package - 0 stars on GitHub
Top 9.1% on proxy.golang.org
github.com/anchore/grant v0.2.7
Search an SBOM for licenses and the packages they belong to
13 versions - Latest release: about 2 months ago - 28 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/gatecheckdev/gatecheck v0.8.1
Gatecheck CI/CD Validation Tool
35 versions - Latest release: 2 months ago - 7 stars on GitHub
github.com/djcass44/ci-tools v1.10.0
44 versions - Latest release: 3 months ago - 2 dependent packages - 0 stars on GitHub
Top 5.3% on proxy.golang.org
github.com/kubescape/kubescape/v3 v3.0.34
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clust...
112 versions - Latest release: 3 months ago - 8,984 stars on GitHub
Top 9.3% on proxy.golang.org
github.com/armosec/kubescape/v3 v3.0.34
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clust...
112 versions - Latest release: 3 months ago - 9,475 stars on GitHub
Top 9.1% on proxy.golang.org
github.com/defenseunicorns/run-run-run v0.6.0
15 versions - Latest release: 3 months ago - 3 stars on GitHub
Top 9.1% on proxy.golang.org
github.com/defenseunicorns/maru-runner v0.6.0
Package main is the entrypoint for the maru binary.
15 versions - Latest release: 3 months ago - 1 dependent package - 3 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/noqcks/xeol v0.10.8
An end-of-life (EOL) package scanner for container images, systems, and SBOMs
59 versions - Latest release: 3 months ago - 24 stars on GitHub
Top 7.4% on proxy.golang.org
github.com/xeol-io/xeol v0.10.8
A scanner for end-of-life (EOL) software in container images, filesystems, and SBOMs
59 versions - Latest release: 3 months ago - 204 stars on GitHub
github.com/lineaje-labs/syft v1.20.0
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
233 versions - Latest release: 4 months ago - 0 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/edgebitio/edgebit-cli v0.9.0
CLI client for EdgeBit
17 versions - Latest release: 5 months ago - 0 stars on GitHub
Top 9.1% on proxy.golang.org
github.com/checkmarxdev/containers-resolver v1.0.15
Go module to extract images from files and resolve image packages
17 versions - Latest release: 5 months ago - 0 stars on GitHub
Top 9.1% on proxy.golang.org
github.com/CheckmarxDev/containers-resolver v1.0.15
Go module to extract images from files and resolve image packages
17 versions - Latest release: 5 months ago - 0 stars on GitHub
Top 9.0% on proxy.golang.org
github.com/scribe-security/gatekeeper-valint v1.5.18
67 versions - Latest release: 6 months ago - 0 stars on GitHub
Top 7.6% on proxy.golang.org
github.com/validator-labs/validator-plugin-kubescape v0.0.6
validator-plugin-kubescape provides configurable CVE alerting on top of Kubescape and creates Val...
6 versions - Latest release: 6 months ago - 2 stars on GitHub
Top 7.5% on proxy.golang.org
github.com/spectrocloud-labs/validator-plugin-kubescape v0.0.6
validator-plugin-kubescape provides configurable CVE alerting on top of Kubescape and creates Val...
6 versions - Latest release: 6 months ago - 1 stars on GitHub
Top 0.7% on proxy.golang.org
github.com/anchore/syft v1.17.0
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
218 versions - Latest release: 7 months ago - 217 dependent packages - 179 dependent repositories - 3,878 stars on GitHub
Top 1.1% on proxy.golang.org
github.com/derailed/k9s v0.32.7 💰
🐶 Kubernetes CLI To Manage Your Clusters In Style!
146 versions - Latest release: 7 months ago - 14 dependent packages - 4 dependent repositories - 20,057 stars on GitHub
Top 7.6% on proxy.golang.org
github.com/teleclimber/dropserver v0.13.3 💰
An application platform for your personal web services. https://dropserver.org
33 versions - Latest release: 9 months ago - 26 stars on GitHub
Top 5.4% on proxy.golang.org
github.com/project-stacker/stacker v1.0.0
Build OCI images natively from a declarative format
71 versions - Latest release: 9 months ago - 1 dependent repositories - 134 stars on GitHub
Top 4.9% on proxy.golang.org
stackerbuild.io/stacker v1.0.0
Build OCI images natively from a declarative format
71 versions - Latest release: 9 months ago - 3 dependent repositories - 204 stars on GitHub
Top 7.6% on proxy.golang.org
github.hscsec.cn/anchore/grype v0.80.1
150 versions - Latest release: 9 months ago
Top 9.1% on proxy.golang.org
github.hscsec.cn/anchore/syft v1.12.2
208 versions - Latest release: 9 months ago
Top 9.4% on proxy.golang.org
github.com/pgxman/pgxman v1.4.2
Developer-friendly package manager and registry for PostgreSQL extensions
72 versions - Latest release: 10 months ago - 108 stars on GitHub
Top 7.7% on proxy.golang.org
github.com/hydradatabase/pgxman v1.4.2
Developer-friendly package manager and registry for PostgreSQL extensions
72 versions - Latest release: 10 months ago - 128 stars on GitHub
Top 5.3% on proxy.golang.org
github.com/openclarity/vmclarity v0.7.2
VMClarity is an open source tool for agentless detection and management of Virtual Machine Softwa...
10 versions - Latest release: 11 months ago - 1 dependent package - 2 dependent repositories - 33 stars on GitHub
github.com/testwill/trivy v1.53.0
Find vulnerabilities, misconfigurations, secrets, SBOM in containers, Kubernetes, code repositori...
148 versions - Latest release: 11 months ago - 0 stars on GitHub
Top 6.6% on proxy.golang.org
github.com/salim-runsafe/syft v1.8.1
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
2 versions - Latest release: 12 months ago - 0 stars on GitHub
Top 7.5% on proxy.golang.org
github.com/unicornchance/redesigned-lamp v1.0.13
14 versions - Latest release: 12 months ago
Top 9.1% on proxy.golang.org
github.hscsec.cn/gatecheckdev/gatecheck v0.7.5
34 versions - Latest release: 12 months ago
github.com/innomotics/cyclonedx-license-resolver v0.1.0
Library to support mapping different types of valid CycloneDX licenses to valid SPDX License-IDs
3 versions - Latest release: 12 months ago - 0 stars on GitHub
github.com/innomotics/cdxlr v0.1.0
Library to support mapping different types of valid CycloneDX licenses to valid SPDX License-IDs
3 versions - Latest release: 12 months ago - 1 stars on GitHub
Top 6.7% on proxy.golang.org
github.hscsec.cn/derailed/k9s v0.32.5
144 versions - Latest release: about 1 year ago
github.com/ximager/ximager v1.3.0
OCI artifact manager
7 versions - Latest release: about 1 year ago - 5 stars on GitHub
Top 7.6% on proxy.golang.org
github.com/cvedb/cvectl v0.0.1
1 version - Latest release: about 1 year ago - 0 stars on GitHub
Top 9.3% on proxy.golang.org
github.com/project-stacker/sbom v0.0.7
A stacker companion SBOM generator library and tool
7 versions - Latest release: about 1 year ago - 0 stars on GitHub
Top 8.7% on proxy.golang.org
github.com/project-stacker/stacker-bom v0.0.7
7 versions - Latest release: about 1 year ago
github.com/edgebitio/syft v1.4.1
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
200 versions - Latest release: about 1 year ago - 0 stars on GitHub
github.com/go-sigma/sigma v1.3.0
OCI artifact manager
8 versions - Latest release: about 1 year ago - 5 stars on GitHub
Top 8.8% on proxy.golang.org
github.phpd.cn/gatecheckdev/gatecheck v0.5.0
26 versions - Latest release: about 1 year ago
Top 8.0% on proxy.golang.org
github.com/racer159/jackal v1.0.0
Package main is the entrypoint for the Jackal binary.
129 versions - Latest release: about 1 year ago - 1 stars on GitHub
Top 8.0% on proxy.golang.org
github.com/Racer159/jackal v1.0.0
Package main is the entrypoint for the Jackal binary.
2 versions - Latest release: about 1 year ago - 0 stars on GitHub
github.com/BenjiTrapp/syft-fork v1.0.0
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
1 version - Latest release: over 1 year ago - 0 stars on GitHub
github.com/benjitrapp/syft-fork v1.0.0
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
1 version - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.1% on proxy.golang.org
github.skymusic.top/anchore/syft v1.0.0
190 versions - Latest release: over 1 year ago
Top 8.6% on proxy.golang.org
github.com/testwill/grype v0.74.7
A vulnerability scanner for container images and filesystems
136 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 5.7% on proxy.golang.org
github.com/deepfence/ThreatMapper/deepfence_worker v0.0.0-20240126010313-b6c4f07d7e7b
Open source cloud native security observability platform. Linux, K8s, AWS Fargate and more.
191 versions - Latest release: over 1 year ago - 4,364 stars on GitHub
Top 5.8% on proxy.golang.org
github.com/ckotzbauer/sbom-operator v0.0.0-20240121123323-403368f12fb2
Catalogue all images of a Kubernetes cluster to multiple targets with Syft
152 versions - Latest release: over 1 year ago - 155 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/ckotzbauer/vulnerability-operator v0.0.0-20240120095640-993fea8843cd
Scans SBOMs for vulnerabilities with Grype
131 versions - Latest release: over 1 year ago - 71 stars on GitHub
Top 6.7% on proxy.golang.org
github.com/imjasonh/wolfictl v0.1.0
A CLI used to work with the Wolfi OSS project
27 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.5% on proxy.golang.org
github.com/lucasrod16/exploitlens v0.0.0-20240115233331-9d0aa3259549
A simple, lightweight vulnerability scanner that reports if CVEs are present in the CISA KEV data...
1 version - Latest release: over 1 year ago - 1 stars on GitHub
Top 3.2% on proxy.golang.org
github.com/openclarity/kubeclarity/runtime_scan v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
86 versions - Latest release: over 1 year ago - 1 dependent package - 1 dependent repositories - 886 stars on GitHub
Top 4.8% on proxy.golang.org
github.com/openclarity/kubeclarity/cis_docker_benchmark_scanner v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
46 versions - Latest release: over 1 year ago - 886 stars on GitHub
Top 3.8% on proxy.golang.org
github.com/openclarity/kubeclarity/cli v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
85 versions - Latest release: over 1 year ago - 1 dependent package - 1 dependent repositories - 886 stars on GitHub
Top 4.8% on proxy.golang.org
github.com/openclarity/kubeclarity/backend v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
96 versions - Latest release: over 1 year ago - 886 stars on GitHub
Top 2.5% on proxy.golang.org
github.com/openclarity/kubeclarity/shared v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
111 versions - Latest release: over 1 year ago - 7 dependent packages - 1 dependent repositories - 886 stars on GitHub
Top 4.6% on proxy.golang.org
github.com/openclarity/kubeclarity/runtime_k8s_scanner v0.0.0-20240111133845-5f6b41116110
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
61 versions - Latest release: over 1 year ago - 886 stars on GitHub
Top 9.9% on proxy.golang.org
github.com/openclarity/grype-server/grype-server v0.0.0-20240109091301-4b85fc6ec97d
Running Grype scanner as a K8s server
5 versions - Latest release: over 1 year ago - 8 stars on GitHub
github.com/gsoc2/syft v0.98.1
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
180 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 8.2% on proxy.golang.org
github.com/M0Rf30/yap v0.0.0-20231110154441-efab2a56a24c
Package software with ease 📦 Versatile deb, rpm and apk packager fueled by PKGBUILD specfiles and...
26 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 9.2% on proxy.golang.org
github.skymusic.top/openclarity/vmclarity v0.6.0
6 versions - Latest release: over 1 year ago
Top 4.9% on proxy.golang.org
github.com/armosec/kubescape/v2 v2.9.2
293 versions - Latest release: over 1 year ago - 2 dependent repositories
Top 2.8% on proxy.golang.org
github.com/kubescape/kubescape/v2 v2.9.2
Kubescape is an open-source Kubernetes security platform for your IDE, CI/CD pipelines, and clust...
293 versions - Latest release: over 1 year ago - 23 dependent repositories - 8,118 stars on GitHub
Top 10.0% on proxy.golang.org
github.com/maliksalman/spring-boot-scanner v0.2.0
Scans various platforms for deployed spring-boot applications and their metadata
9 versions - Latest release: over 1 year ago - 0 stars on GitHub
github.com/anubhav06/copa-grype v0.0.2
🧩 Grype plugin for copa
7 versions - Latest release: over 1 year ago - 0 stars on GitHub
Top 4.8% on proxy.golang.org
github.com/openclarity/kubeclarity/e2e v0.0.0-20231003113853-217c5fc8c9f1
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulne...
46 versions - Latest release: over 1 year ago - 886 stars on GitHub
github.com/noqcks/syft v0.0.0-20230920222752-a9e2c4e288e5
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
1 version - Latest release: over 1 year ago - 0 stars on GitHub
github.com/kastenhq/syft v0.0.0-20230821225854-0710af25cdbe
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
1 version - Latest release: almost 2 years ago - 0 stars on GitHub
github.com/khulnasoft-labs/griffon v0.0.0-20230804082139-2b6c84e62ef9
2 versions - Latest release: almost 2 years ago - 0 stars on GitHub
github.com/cmwylie19/zarf v0.28.3
DevSecOps for Air Gap & Limited-Connection Systems. https://zarf.dev/
2 versions - Latest release: almost 2 years ago - 0 stars on GitHub
github.com/nextlinux/govulners v0.0.0-20230626195557-430fc285c7d3
Works seamlessly with Govulners (a fast, modern vulnerability scanner)
1 version - Latest release: almost 2 years ago - 0 stars on GitHub
Top 9.7% on proxy.golang.org
github.com/w3security/gosbom v0.0.0-20230619073923-3a63256f755d
1 version - Latest release: almost 2 years ago
github.com/NeXTLinux/griffon v0.32.0
2 versions - Latest release: about 2 years ago - 0 stars on GitHub
github.com/nextlinux/griffon v0.62.1
101 versions - Latest release: about 2 years ago - 0 stars on GitHub
Top 7.8% on proxy.golang.org
github.com/jetstack/tally v0.0.1
5 versions - Latest release: about 2 years ago - 12 stars on GitHub
github.com/suhasgummanirmata/grype v0.62.0
A vulnerability scanner for container images and filesystems
99 versions - Latest release: about 2 years ago - 0 stars on GitHub
github.com/suhasgummanirmata/syft v0.81.0
CLI tool and library for generating a Software Bill of Materials from container images and filesy...
157 versions - Latest release: about 2 years ago - 0 stars on GitHub
Top 8.7% on proxy.golang.org
github.com/nextlinux/gosbom v0.81.0
157 versions - Latest release: about 2 years ago
github.com/NeXTLinux/gosbom v0.81.0
23 versions - Latest release: about 2 years ago - 0 stars on GitHub
Top 6.7% on proxy.golang.org
github.com/piec/k9s v0.27.4
🐶 Kubernetes CLI To Manage Your Clusters In Style!
125 versions - Latest release: about 2 years ago - 0 stars on GitHub
Top 2.8% on proxy.golang.org
github.com/kubescape/storage v0.2.0
87 versions - Latest release: over 2 years ago - 4 dependent packages - 2 dependent repositories
Past Dependents
Include Past Dependents

Check this option to include packages that no longer depend on this package in their latest version but previously did.