An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 1.8% on proxy.golang.org
Top 0.2% dependent packages on proxy.golang.org
Top 0.3% dependent repos on proxy.golang.org
Top 3.6% forks on proxy.golang.org
Top 0.2% docker downloads on proxy.golang.org

proxy.golang.org : github.com/in-toto/in-toto-golang

A Go implementation of in-toto. in-toto is a framework to protect software supply chain integrity.

Registry - Source - Documentation - JSON - codemeta.json
purl: pkg:golang/github.com/in-toto/in-toto-golang
Keywords: in-toto , security , software-supply-chain
License: Apache-2.0
Latest release: over 2 years ago
First release: almost 5 years ago
Namespace: github.com/in-toto
Dependent packages: 433
Dependent repositories: 906
Stars: 141 on GitHub
Forks: 52 on GitHub
Docker dependents: 993
Docker downloads: 7,104,174,267
Total Commits: 600
Committers: 35
Average commits per author: 17.143
Development Distribution Score (DDS): 0.698
More commit stats: commits.ecosyste.ms
See more repository details: repos.ecosyste.ms
Last synced: about 21 hours ago

Moderate
GSA_kwCzR0hTQS12cnhwLW1nOWYtaHdmM80V7g
Improperly Implemented path matching for in-toto-golang
Ecosystems: go
Packages: github.com/in-toto/in-toto-golang
Source: github
Published: about 4 years ago