syft

by anchore · Infrastructure

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

New0 ratings9,533 starsActive
InfrastructureDeveloper ToolGoShell
↓ Download v1.51.1GitHub⚑ Report
syft — image 1
syft — image 2
syft — image 3
syft — image 4
1 / 4

About this project

Syft A CLI tool and Go library for generating a Software Bill of Materials (SBOM) from container images and filesystems. Exceptional for vulnerability detection when used with a scanner like Grype.                         Features — Generates SBOMs for container images, filesystems, archives (see the docs for a full list of supported scan targets) — Supports dozens of packaging ecosystems (e.g. Alpine (apk), Debian (dpkg), RPM, Go, Python, Java, JavaScript, Ruby, Rust, PHP, .NET, and many more) — Supports OCI, Docker, Singularity, and more image formats — Works seamlessly with Grype for vulnerability scanning —…

Technologies

ShellPythonDockerfileMakefileGocontainersdockercyclonedx

Project health

Actively maintained
Last update4 days ago
Contributors252
Latest releasev1.51.1
Open issues & PRs635
LicenseApache-2.0
On GitHubsince 2020

GitHub

9,533
stars
947
forks
252
contributors
635
open issues & PRs
Go
language
4 days ago
last commit
View on GitHub ↗All releases ↗

Reviews

out of 5 · 0 ratings
★★★★★
0%
★★★★
0%
★★★
0%
★★
0%
0%
Sign in to write a review
No reviews yet
Be the first to review syft.

Built by

anchore
Imported from GitHub · not yet claimed on GitPalace
View developer pageSign in with GitHub to claim

Maintain anchore/syft? Claiming verifies admin access through your GitHub account and gives you control of this listing.

You might also like