Ecosyste.ms: Packages

An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

pypi.org "supply-chain" keyword

Top 2.3% on pypi.org
in-toto 3.0.0
A framework to define and secure the integrity of software supply chains
30 versions - Latest release: 1 day ago - 2 dependent packages - 34 dependent repositories - 77.1 thousand downloads last month - 788 stars on GitHub - 3 maintainers
test-stockpyl 0.0.9
Python inventory optimization tools.
1 version - Latest release: almost 2 years ago - 17 downloads last month - 79 stars on GitHub - 1 maintainer
Top 4.8% on pypi.org
sigstore 2.1.5
A tool for signing Python package distributions
43 versions - Latest release: about 1 month ago - 3 dependent packages - 9 dependent repositories - 72.1 thousand downloads last month - 209 stars on GitHub - 3 maintainers
Top 2.0% on pypi.org
pip-audit 2.7.3 💰
A tool for scanning Python environments for known vulnerabilities
59 versions - Latest release: 16 days ago - 39 dependent packages - 115 dependent repositories - 501 thousand downloads last month - 922 stars on GitHub - 3 maintainers
stockpyl 1.0.0
A Python package for inventory optimization and simulation
17 versions - Latest release: 2 days ago - 1 dependent repositories - 528 downloads last month - 79 stars on GitHub - 1 maintainer
routrs 1.0.0
Blazing fast geograph-based shortest distance calculation for Python. Written 100% in Rust.
2 versions - Latest release: 23 days ago - 0 stars on GitHub - 1 maintainer
patchwork-cli 0.0.87
Patchwork configurations for various patchflows
9 versions - Latest release: 7 days ago - 306 downloads last month - 1 stars on GitHub - 1 maintainer
otterdog 0.6.0
Tool to manage GitHub organizations and their repositories.
6 versions - Latest release: 22 days ago - 86 downloads last month - 9 stars on GitHub - 1 maintainer
mlbomdoc 0.1.0 💰
MLBOM documentation tool
1 version - Latest release: 4 months ago - 15 downloads last month - 3 stars on GitHub - 1 maintainer
pyscitt 0.3.0
Tools to sign claims and interact with a SCITT CCF Ledger
3 versions - Latest release: 2 months ago - 28 downloads last month - 28 stars on GitHub - 1 maintainer
oss-red-flag-checker 0.1.6
Check remote repositories for typical red flags like CLAs and risks due to low development activity
6 versions - Latest release: 9 days ago - 34 downloads last month - 14 stars on GitHub - 2 maintainers
repository-service-tuf 10.7.8
Repository Service for TUF Command Line Interface
20 versions - Latest release: over 1 year ago - 458 downloads last month - 9 stars on GitHub - 1 maintainer
satisfactory-planner 0.0.1
Analyze data, find all recipes and more in the game of Satisfactory
1 version - Latest release: about 2 years ago - 1 dependent repositories - 11 downloads last month - 2 stars on GitHub - 1 maintainer
valiant 0.2.3
Audit tool to help investigate Python dependencies
5 versions - Latest release: about 3 years ago - 2 dependent repositories - 69 downloads last month - 4 stars on GitHub - 1 maintainer
suppy 0.2.0 removed
5 versions - Latest release: over 1 year ago - 1 dependent repositories - 7 downloads last month - 0 stars on GitHub - 1 maintainer
pysign 0.0.1rc0
A tool for signing Python package distributions
1 version - Latest release: over 2 years ago - 1 dependent repositories - 22 downloads last month - 209 stars on GitHub - 2 maintainers
pyraider 1.0.20
Using PyRaider You can scan installed dependencies known security vulnerabilities. It uses public...
35 versions - Latest release: about 2 years ago - 1 dependent repositories - 482 downloads last month - 18 stars on GitHub - 1 maintainer
chainjacking 1.1.2
A tool to scan your direct GitHub dependencies for Go and find ones susceptible to ChainJacking a...
1 version - Latest release: over 2 years ago - 745 downloads last month - 55 stars on GitHub - 1 maintainer
caniuseonlywheels 1.0.11
Can I switch to installing only using wheels and never sdist?
2 versions - Latest release: over 2 years ago - 1 dependent repositories - 29 downloads last month - 1 stars on GitHub - 1 maintainer
Top 7.2% on pypi.org
ochrona 2.0.2
Ochrona checks your open source dependencies for vulnerabilities and policy violations.
33 versions - Latest release: over 1 year ago - 8 dependent repositories - 12.4 thousand downloads last month - 51 stars on GitHub - 1 maintainer
Top 7.3% on pypi.org
skjold 0.6.2 💰
Security audit Python project dependencies against security advisory databases.
18 versions - Latest release: 8 days ago - 13 dependent repositories - 7.47 thousand downloads last month - 63 stars on GitHub - 1 maintainer
packj 0.15
Packj flags "risky" open-source packages in your software supply chain
14 versions - Latest release: over 1 year ago - 11 downloads last month - 611 stars on GitHub - 1 maintainer
pip-abandoned 0.4.1
Search for abandoned and deprecated python packages
6 versions - Latest release: 3 months ago - 86 downloads last month - 6 stars on GitHub - 1 maintainer
feloopy 0.3.0 💰
FelooPy: Efficient and feature-rich integrated decision environment
16 versions - Latest release: about 1 month ago - 192 downloads last month - 121 stars on GitHub - 1 maintainer
supplychainpy 0.0.5
A library for supply chain, operations and manufacturing, analysis, modelling and simulation.
7 versions - Latest release: over 6 years ago - 2 dependent repositories - 38 downloads last month - 270 stars on GitHub - 1 maintainer
or-gym 0.5.0
OR-Gym: A set of environments for developing reinforcement learning agents for OR problems.
9 versions - Latest release: over 1 year ago - 2 dependent repositories - 90 downloads last month - 348 stars on GitHub - 1 maintainer
Related Keywords
security 12 python 10 pip 5 operations-research 5 vulnerability-scanners 4 optimization 4 supply chain 4 security-tools 4 simulation 3 devsecops 3 security-audit 3 vulnerabilities 3 pipenv 3 supply-chain-security 2 logistics 2 pypi 2 dependency-analysis 2 sca 2 operations research 2 vulnerability-detection 2 operations management 2 safety 2 vulnerability 2 developer-tools 2 devops 2 inventory-management 2 codesigning 2 gemnasium 1 github-security-advisories 1 poetry 1 pyup 1 safety-db 1 software supply chain 1 malware 1 typo-squatting 1 open-source software 1 software composition analysis 1 devops-tools 1 dynamic-analysis 1 malware-analysis 1 npm 1 rubygems 1 dependency-graph 1 cvssv3 1 cvssv2 1 security-vulnerability 1 requirements 1 pipfile 1 secure-systems-lab 1 sast 1 testing 1 inventory management 1 dependencies 1 ochrona 1 orms 1 wheels 1 satisfactory 1 industrial-engineering 1 integer-programming 1 linear-programming 1 mixed-integer-programming 1 multi-attribute-decision-making 1 multi-criteria-decision-making 1 multi-objective-optimization 1 nonlinear-programming 1 analyst 1 flask 1 forecasting 1 monte-carlo-simulation 1 deep-reinforcement-learning 1 reinforcement-learning 1 supply-chain-management 1 vehicle-routing-problem 1 sandboxing 1 static-analysis 1 package-management 1 computer science 1 data science 1 decision making 1 decision science 1 industrial engineering 1 machine learning 1 management science 1 mathematical modeling 1 new-york-university 1 software 1 autoor 1 constraint-programming 1 decision-science 1 tuf 1 hacktoberfest 1 cli 1 contributor-license-agreement 1 compliance 1 risk-analysis 1 open-source-management 1 ospo 1 scitt 1 cryptography 1 ccf 1