We are Anchore. Securing and managing the software supply chain. Proud parents of Syft and Grype
We regularly write about what we're working on; here are some recent blog posts:
- How to Respond When Your Customers Require an SBOM (and Even Write It Into the Contract!) (1 day ago)
- The SBOM Paradox: Why ‘Useless’ Today Means Essential Tomorrow (1 week ago)
- SCA vs. SBOM: How They Differ & Why They Work Best as a Team (2 weeks ago)
- False Positives and False Negatives in Vulnerability Scanning: Lessons from the Trenches (2 weeks ago)
- NIS2 Compliance with SBOMs: a Scalable, Secure Supply Chain Solution (3 weeks ago)
We discuss our open source tools on Discourse. Here are some recent topics:
- How to scan 2 directories at one time (1 day ago)
- June 19th | Open Source Gardening | Live Stream (2 days ago)
- Anchore Open Source Weekly Report - Week 24, 2025 (2 days ago)
- Grype - v0.94.0 released (6 days ago)
- Syft - v1.27.1 released (6 days ago)