An open API service providing package, version and dependency metadata of many open source software ecosystems and registries.

Top 3.6% on pypi.org
Top 0.3% downloads on pypi.org
Top 0.8% dependent packages on pypi.org
Top 1.3% dependent repos on pypi.org
Top 8.3% forks on pypi.org
Top 0.6% docker downloads on pypi.org

pypi.org : cyclonedx-python-lib

Python library for CycloneDX

Registry - Source - Homepage - Documentation - JSON
purl: pkg:pypi/cyclonedx-python-lib
Keywords: CycloneDX , library , OWASP , SCA , Software Bill of Materials , Bill of Materials , BOM , SBOM , VEX , VDR , OBOM , MBOM , SaaSBOM , SPDX , PackageURL , PURL , attestation , bill-of-materials , bom , cbom , cyclonedx , hacktoberfest , mbom , obom , owasp , package-url , purl , python , saasbom , sbom , software-bill-of-materials , software-library , spdx , vex
License: Apache-2.0
Latest release: about 2 months ago
First release: over 3 years ago
Dependent packages: 22
Dependent repositories: 127
Downloads: 3,842,317 last month
Stars: 79 on GitHub
Forks: 47 on GitHub
Docker dependents: 74
Docker downloads: 20,549,309
Total Commits: 413
Committers: 20
Average commits per author: 20.65
Development Distribution Score (DDS): 0.63
More commit stats: commits.ecosyste.ms
See more repository details: repos.ecosyste.ms
Funding links: https://owasp.org/donate/?reponame=www-project-cyclonedx&title=OWASP+CycloneDX
Last synced: 5 days ago

dverse-agent-python 1.0.5
A package for creating an Agent for the DVerse platform.
6 versions - Latest release: 10 months ago - 168 downloads last month - 0 stars on GitHub - 1 maintainer
pingsafe-cli 0.2.13
[Deprecated] PingSafe CLI is an extension of our vision to shift-left security with PingSafe.
30 versions - Latest release: about 1 year ago - 612 downloads last month - 1 maintainer
ludvig 0.8.4
A simple vulnerability scanner
21 versions - Latest release: about 1 year ago - 565 downloads last month - 15 stars on GitHub - 1 maintainer
Top 9.8% on pypi.org
checkov3 0.1.13
Infrastructure as code static analysis
13 versions - Latest release: over 1 year ago - 82 downloads last month - 6,234 stars on GitHub - 1 maintainer
chekov 2.3.273
A fake typosquat malicious library of checkov, used only for testing purposes. The library suppos...
1 version - Latest release: almost 2 years ago - 79 downloads last month - 5,627 stars on GitHub - 1 maintainer
psgraph 2.3.199
Infrastructure as code static analysis
1 version - Latest release: almost 2 years ago - 1 dependent package - 27 downloads last month - 7,482 stars on GitHub - 1 maintainer
testiac 2.3.199
Infrastructure as code static analysis
1 version - Latest release: almost 2 years ago - 5,511 stars on GitHub
sg-ckv 2.3.199
Infrastructure as code static analysis
1 version - Latest release: almost 2 years ago - 5,511 stars on GitHub
vexy 0.3.1
Generate VEX (Vulnerability Exploitability Exchange) CycloneDX documents
5 versions - Latest release: about 2 years ago - 271 downloads last month - 21 stars on GitHub - 1 maintainer
Past Dependents
Include Past Dependents

Check this option to include packages that no longer depend on this package in their latest version but previously did.