Collected molecules will appear here. Add from search or explore.
Automates the generation of Software Bill of Materials (SBOM) for containers and filesystems within GitHub Actions workflows using the Syft tool.
stars
228
forks
38
This project is a wrapper for Anchore's Syft tool. While Syft itself is a high-quality scanner, this repository is a CI/CD integration. It faces competition from GitHub's native dependency graph and export features, but maintains a niche for users requiring deep container inspection and specific industry-standard formats (SPDX, CyclonDX) not fully supported by basic platform tools.
TECH STACK
INTEGRATION
cli_tool
READINESS