We are Anchore. Securing and managing the software supply chain. Proud parents of Syft and Grype
We regularly write about what we're working on; here are some recent blog posts:
- Packages, Policies, and Performance: What’s New in Grant (1 day ago)
- Meeting 2025’s SBOM Compliance Deadlines: A Practical Implementation Guide Pt. 2 (2 days ago)
- Minutes vs. Months: The SBOM Advantage in Zero-Day Response (1 week ago)
- Streamline Vulnerability Management: From Minimal Images to Comprehensive SBOM Analysis (1 week ago)
- OpenSSF SBOM Coffee Club is exactly what you think it is (2 weeks ago)
We discuss our open source tools on Discourse. Here are some recent topics:
- Grype - v0.99.0 released (1 day ago)
- Syft - v1.32.0 released (2 days ago)
- Any plans for AIBOM using Syft or Grype (2 days ago)
- Reducing 'unknowns' via targeted fuzzy binary catalogers (3 days ago)
- Grype .98 misidentifies package versions (3 days ago)