Skip to content
#

sbom

Here are 114 public repositories matching this topic...

LunaSec - Dependency Security Scanner that automatically notifies you about vulnerabilities like Log4Shell or node-ipc in your Pull Requests and Builds. Protect yourself in 30 seconds with the LunaTrace GitHub App: https://github.com/marketplace/lunatrace-by-lunasec/

  • Updated May 2, 2024
  • TypeScript

Manage third-party license compliance in your Rollup or Vite builds. Automatically discover every dependency, extract its license info, fail builds with disallowed licenses, and generate a complete “bill-of-materials” in JSON, HTML, CSV or custom formats.

  • Updated Jun 7, 2026
  • TypeScript
Adsum-IoT-Coder

AI coding agent for embedded IoT firmware in VS Code: Espressif ESP32 (ESP-IDF) and Nordic nRF52/53/54/91 (nRF Connect SDK, Zephyr). Builds, flashes and debugs on real hardware (RTT, UART, BLE sniffer), cellular LTE-M/NB-IoT/NB-NTN, Fanstel gateway firmware, and one-click EU Cyber Resilience Act readiness: SBOM (SPDX), CVE scan, secure-by-design.

  • Updated Oct 1, 2026
  • TypeScript

Open-source package registry for MCP (Model Context Protocol) servers with built-in security scanning, trust scoring (L1-L4), and CLI. Every bundle verified across 25 supply-chain controls.

  • Updated Oct 1, 2026
  • TypeScript

Add this topic to your repo

To associate your repository with the sbom topic, visit your repo's landing page and select "manage topics."

Learn more