Clear filters 13 of 585 tools shown

Supply Chain Security

Tools for securing the software supply chain and dependencies.

Syft

Syft

Supply Chain Security

A CLI tool and Go library for generating Software Bill of Materials (SBOMs) from container images and filesystems.

Multi-Cloud
Open Source
Self Hosted Only
Rekor

Rekor

Supply Chain Security

Software Supply Chain Transparency Log

Multi-Cloud
Open Source
Self Hosted + Cloud Options
Fulcio

Fulcio

Supply Chain Security

Sigstore OIDC PKI

Multi-Cloud
Open Source
Self Hosted + Cloud Options
Chain-bench

Chain-bench

Supply Chain Security

A tool for auditing the software supply chain against the CIS Software Supply Chain benchmark, focusing on security and compliance in the SDLC.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
Notary V2

Notary V2

Supply Chain Security

A tool for signing and verifying container images to ensure integrity and authenticity in the software supply chain.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
SLSA

SLSA

Supply Chain Security

A framework for ensuring the integrity and security of software supply chains through standardized controls and best practices.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
Sigstore

Sigstore

Supply Chain Security

A tool for ensuring the integrity and authenticity of software artifacts in the supply chain.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
in-toto

in-toto

Supply Chain Security

A tool for ensuring the integrity of software supply chains by providing a transparent and verifiable record of all steps performed.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
Codenotary Trustcenter

Codenotary Trustcenter

Supply Chain Security

Codenotary's Trustcenter ensures the integrity and security of software supply chains in DevOps environments through artifact tracking, SBOM management, and VEX curation.

Multi-Cloud
Proprietary
Cloud Service Only
Pyrsia

Pyrsia

Supply Chain Security

A decentralized, secure build network and package repository that addresses vulnerabilities in the open-source software supply chain.

Multi-Cloud
Open Source
Self Hosted + Cloud Options
Aqua Security Software Supply Chain Security

Aqua Security Software Supply Chain Security

Supply Chain Security

Aqua Security's Software Supply Chain Security solution provides visibility and protection of the software development and distribution process.

Multi-Cloud
Proprietary
Cloud Service Only
Dependency-Track

Dependency-Track

Supply Chain Security

A platform for managing risk in the software supply chain by leveraging Software Bill of Materials (SBOM) analysis.

Multi-Cloud
Open Source
Self Hosted + Cloud Options