Skip to content
View jspeed-meyers's full-sized avatar

Block or report jspeed-meyers

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
Showing results

(d)ocker(f)ile (c)onverter: CLI to convert Dockerfiles to use Chainguard Images and APKs in FROM and RUN lines etc.

Go 22 2 Updated Mar 20, 2025

A fork of Bandit tool with patterns to identifying malicious python code.

Python 24 2 Updated Sep 1, 2022

Go tool to declaratively bump dependencies.

Go 9 13 Updated Mar 17, 2025

Panic at the distro research stuff

JavaScript 2 3 Updated Aug 28, 2024

#supply #chain #attack #detection

YARA 508 37 Updated Mar 21, 2025

krata is a Xen control plane in Rust.

Rust 284 12 Updated Mar 20, 2025

PlugFest-in-a-Box is a powerful tool to reveal key areas of difference between several Software Bills of Materials (SBOMs) and applying thorough metrics to identify any and all quality issues.

Java 3 Updated Jan 7, 2024

Accurately separates a URL’s subdomain, domain, and public suffix, using the Public Suffix List (PSL).

Python 1,879 212 Updated Mar 21, 2025

A CLI used to work with the Wolfi OSS project

Go 60 62 Updated Mar 21, 2025

An SBOM query language and associated utilities

Go 54 3 Updated Jan 22, 2024

Example CLI project to demo API architecture and protobom library

Go 20 9 Updated Mar 19, 2025

A universal SBOM representation in protocol buffers

Go 280 48 Updated Mar 17, 2025

Docs and Tutorials for Chainguard

HTML 83 80 Updated Mar 22, 2025

Darkfiles finds orphaned files in container images and makes them to bad deeds

Go 41 11 Updated May 11, 2023

Official GitHub Action for golangci-lint from its authors

TypeScript 1,170 160 Updated Mar 19, 2025

sigstore maven plugin

Java 8 4 Updated Jul 22, 2024

Fast linters runner for Go

Go 16,502 1,430 Updated Mar 21, 2025

This repository contains a list of papers about software supply chain

27 7 Updated May 22, 2024

Build OCI images from APK packages directly without Dockerfile

Go 1,297 141 Updated Mar 21, 2025

YOLO-level verifier

Go 7 2 Updated May 16, 2022

Common go library shared across sigstore services and clients

Go 475 127 Updated Mar 21, 2025

Sigstore OIDC PKI

Go 694 143 Updated Mar 21, 2025

Software Supply Chain Transparency Log

Go 940 175 Updated Mar 21, 2025

Code signing and transparency for containers and binaries

Go 4,788 570 Updated Mar 21, 2025

An Open Source Java tool to examine binary Java artifacts that we make available to clients and prospects. TAG_PRODUCTION, OWNER_KEN, DC_PUBLIC

Java 2 3 Updated Jul 7, 2022

Source for the monitoring website in Rekor VIP

Svelte 1 1 Updated Apr 25, 2022

sigstore installation walkthrough, local

Shell 57 7 Updated May 3, 2024

Comparing the detection and prioritization performance of tools that detect vulnerable dependencies of a software application.

Jupyter Notebook 4 2 Updated May 5, 2023

A place to discuss!

6 Updated Nov 4, 2022

Learn the language basics in this 10-part course.

Jupyter Notebook 429 335 Updated Mar 11, 2024
Next
Showing results