Evidence-grounded cryptographic inventory and post-quantum migration planning for software repositories. Local static analysis, zero mandatory runtime dependencies, SARIF and CycloneDX output.
-
Updated
Sep 5, 2026 - Python
Evidence-grounded cryptographic inventory and post-quantum migration planning for software repositories. Local static analysis, zero mandatory runtime dependencies, SARIF and CycloneDX output.
Semantic SBOM/CBOM/AI-BOM diff, quality scoring, and compliance validation for CycloneDX/SPDX — component, license, and vulnerability change analysis, cryptographic inventory grading, PQC readiness (CNSA 2.0, NIST IR 8547), and regulatory gates for NTIA, FDA, EU CRA, BSI TR-03183, EUCC, SSDF, EO 14028, and the EU AI Act.
A toolset for dealing with Cryptography Bill of Materials (CBOM)
This repository contains a SonarQube Plugin that detects cryptographic assets in source code and generates CBOM.
GitHub Action to generate Cryptography Bill of Materials (CBOM)
Cryptographic asset inventory and evidence collection for quantum-readiness and post-quantum migration planning.
Repository for uploading, retrieving, and searching Cryptographic Bills of Materials (CBOM) documents.
Enterprise post-quantum security infrastructure for cryptographic discovery, governed migration, KMS, secrets, encrypted storage, audit evidence, and AI workloads.
Curated CBOM (Cryptographic Bill of Materials) tools, cryptographic discovery scanners, PQC migration resources, crypto-agility frameworks and regulatory updates.
Post-quantum cryptography reference studio (NIST FIPS 203/204/205)
Synthetic PQC migration reference architecture with React, TypeScript, Go, evidence-fusion contracts, and bounded NIST traceability.
From Q-Day to Exposure Curves: a capability-conditioned framework for post-quantum migration. Paper, LaTeX source, and the script that produces every number in it.
Inventaire cryptographique et migration post-quantique : CBOM CycloneDX 1.6, constats de securite, catalogue d'algorithmes. Cryptographic inventory (CBOM) for Git repositories and local folders.
Browser-based Harvest-Now-Decrypt-Later risk simulator built around the Mosca Inequality (X+Y>Z). 20+ algorithms, 4 CRQC scenarios, 5 org profiles, and cost-of-delay projections using 2025 GRI expert estimates.
Evidence-first synthetic cryptographic mission twin for post-quantum migration planning
To associate your repository with the cryptographic-inventory topic, visit your repo's landing page and select "manage topics."