Skip to content
@anchore

Anchore, Inc.

 Mastodon  Twitter   LinkedIn   Anchore Community Discourse 

Welcome 👋

We are Anchore. Securing and managing the software supply chain. Proud parents of Syft and Grype

Blog

We regularly write about what we're working on; here are some recent blog posts:

Community

We discuss our open source tools on Discourse. Here are some recent topics:

Pinned Loading

  1. syft syft Public

    CLI tool and library for generating a Software Bill of Materials from container images and filesystems

    Go 7k 650

  2. grype grype Public

    A vulnerability scanner for container images and filesystems

    Go 9.8k 633

  3. scan-action scan-action Public

    Anchore container analysis and scan provided as a GitHub Action

    JavaScript 242 81

  4. sbom-action sbom-action Public

    GitHub Action for creating software bill of materials using Syft.

    TypeScript 185 31

  5. kubernetes-admission-controller kubernetes-admission-controller Public

    Service implementation for a Kubernetes Dynamic Webhook controller for interacting with Anchore

    Go 64 30

  6. anchore-charts anchore-charts Public

    Helm charts for Anchore tools and services

    Python 47 72

Repositories

Showing 10 of 88 repositories
  • syft Public

    CLI tool and library for generating a Software Bill of Materials from container images and filesystems

    anchore/syft’s past year of commit activity
    Go 6,987 Apache-2.0 650 398 24 Updated May 15, 2025
  • test-images Public

    Container automation for testing and validation

    anchore/test-images’s past year of commit activity
    Dockerfile 3 2 0 1 Updated May 15, 2025
  • anchore-charts Public

    Helm charts for Anchore tools and services

    anchore/anchore-charts’s past year of commit activity
    Python 47 Apache-2.0 72 22 9 Updated May 15, 2025
  • grype Public

    A vulnerability scanner for container images and filesystems

    anchore/grype’s past year of commit activity
    Go 9,836 Apache-2.0 633 275 20 Updated May 15, 2025
  • go-rpmdb Public Forked from knqyf263/go-rpmdb

    Library for enumerating packages in an RPM DB (without bindings)

    anchore/go-rpmdb’s past year of commit activity
    Go 0 MIT 60 0 0 Updated May 15, 2025
  • clio Public

    An easy way to bootstrap your application with batteries included.

    anchore/clio’s past year of commit activity
    Go 10 Apache-2.0 5 2 4 Updated May 15, 2025
  • anchore/nvd-data-overrides’s past year of commit activity
    Python 47 CC0-1.0 5 1 1 Updated May 15, 2025
  • anchore/cve-data-enrichment’s past year of commit activity
    15 CC0-1.0 3 0 0 Updated May 15, 2025
  • grant Public

    Search an SBOM for licenses and the packages they belong to

    anchore/grant’s past year of commit activity
    Go 86 Apache-2.0 7 23 2 Updated May 15, 2025
  • anchore/vulnerability-data-tools’s past year of commit activity
    Python 14 Apache-2.0 3 3 1 Updated May 15, 2025