JSPM

Found 46 results for sbom

retire

Retire is a tool for detecting use of vulnerable libraries

  • v5.3.0
  • 80.22
  • Published

@appthreat/cdx-proto

Library to serialize/deserialize CycloneDX BOM with protocol buffers

  • v1.1.4
  • 77.79
  • Published

@cyclonedx/cdxgen

Creates CycloneDX Software Bill of Materials (SBOM) from source or container image

  • v11.6.0
  • 74.99
  • Published

@appthreat/atom

Create atom (⚛) representation for your application, packages and libraries

  • v2.2.7
  • 74.62
  • Published

@soos-io/api-client

This is the SOOS API Client for registered clients leveraging the various integrations to the SOOS platform. Register for a free trial today at https://app.soos.io/register

  • v1.9.4
  • 68.16
  • Published

rollup-plugin-sbom

A rollup and vite plugin to generate SBOMs for your application

  • v2.1.2
  • 63.92
  • Published

@soos-io/soos-sca

SOOS Core SCA Security Analysis - Check for vulnerabilities, licenses, policy violations and more! Register for your free trial at https://app.soos.io/register

  • v4.2.4
  • 60.11
  • Published

@soos-io/soos-sbom

Upload your Software Bill of Materials (SBOM) to SOOS for vulnerability analysis, license matching and more. Register for a free trial today at https://app.soos.io/register

  • v1.2.4
  • 42.82
  • Published

sbom

production sbom command line tool

  • v0.0.0
  • 40.62
  • Published

@gwi42/sbom-utils

Two scripts for working with Software Bill of Materials (SBOM) files in CycloneDX or SPDX JSON formats

  • v1.0.9
  • 32.64
  • Published

retire-site-scanner

A scanner for checking a web site using retire.js

  • v1.6.5
  • 25.71
  • Published

npm-dependencies-extractor

Retrieves the (flat) list of package dependencies for Javascript projects using npm

  • v0.1.0
  • 20.32
  • Published

@soos-io/sample-project

SOOS ( https://soos.io ) is an independent software security company, located in Winooski, VT USA, building security software for your team. Used for testing purposes, this package is an example of a vulnerable package on a public registry.

  • v1.1.4
  • 15.06
  • Published

sbom-report

Converts CycloneDX SBOM .json files to human readable formats.

  • v0.7.6
  • 15.05
  • Published

@wdn2010/cdxgen

Creates CycloneDX Software Bill-of-Materials (SBOM) from source or container image

  • v8.6.0
  • 14.08
  • Published

@ksg97031/cdxgen

Creates CycloneDX Software Bill-of-Materials (SBOM) from source or container image

  • v3.2.12
  • 12.97
  • Published

node-modules-dependencies-extractor

Extracts dependencies from the node_modules folder, to a reference format. This reference format is a JSON file containing arrays of objects with keys name and version.

    • v0.1.1
    • 9.98
    • Published

    @soos-io/sample-project-node-package-fetch

    SOOS ( https://soos.io ) is an independent software security company, located in Winooski, VT USA, building security software for your team. Used for testing purposes, this tool is an example of fetching package information from SOOS.

    • v1.0.2
    • 6.90
    • Published

    @soos-io/sample-project-node-license-fetch

    SOOS ( https://soos.io ) is an independent software security company, located in Winooski, VT USA, building security software for your team. Used for testing purposes, this tool is an example of fetching software license information from SOOS.

    • v1.0.1
    • 6.63
    • Published

    sbom-cli

    production sbom command line tool

    • v0.0.2
    • 5.86
    • Published

    credits-generator

    Generates a list of open-source software within a repository, and a separate list for packages with undefined licenses.

      • v1.0.2
      • 5.82
      • Published

      bom-exchange-cli

      CLI to interact with BOM Exchange APIs

      • v0.0.2
      • 4.63
      • Published

      @soos-io/sample-project-node-vulnerability-fetch

      SOOS ( https://soos.io ) is an independent software security company, located in Winooski, VT USA, building security software for your team. Used for testing purposes, this tool is an example of fetching vulnerability information from SOOS.

      • v1.0.1
      • 2.58
      • Published

      bomtastic

      A utility for creating a software bill of materials (SBOM) from a package-lock.json file without requiring access to the node_modules folder.

        • v0.0.1
        • 2.55
        • Published