Skip to content
Change the repository type filter

All

    Repositories list

    • ghasum

      Public
      Checksums for GitHub Actions.
      Go
      Apache License 2.0
      119231Updated May 1, 2026May 1, 2026
    • Verify GitHub commit signing keys against the Sigstore Rekor transparency log
      Python
      0000Updated May 1, 2026May 1, 2026
    • besu

      Public
      Perpetual automerge for Besu
      Java
      Apache License 2.0
      1.1k0193Updated Apr 30, 2026Apr 30, 2026
    • The source for the website of the SSF CHAINS project https://chains.proj.kth.se/
      HTML
      MIT License
      15800Updated Apr 30, 2026Apr 30, 2026
    • bombom

      Public
      grassroot bill of materials for linux
      Python
      0000Updated Apr 30, 2026Apr 30, 2026
    • flink

      Public
      Perpetual automerge for Apache Flink
      Java
      Apache License 2.0
      14k0121Updated Apr 30, 2026Apr 30, 2026
    • longitudinal study of package registry growth
      Python
      0100Updated Apr 29, 2026Apr 29, 2026
    • zkSBOM

      Public
      Zero-Knowledge SBOM
      Rust
      MIT License
      0500Updated Apr 29, 2026Apr 29, 2026
    • Long term storage of software bills of materials (sbom) https://arxiv.org/pdf/2303.11102.pdf
      Python
      2712Updated Apr 28, 2026Apr 28, 2026
    • Shell
      MIT License
      0000Updated Apr 28, 2026Apr 28, 2026
    • aotp

      Public
      Looking inside AOTCache
      Java
      0010Updated Apr 28, 2026Apr 28, 2026
    • ReSolVer

      Public
      Record Solve Verify. A project for verifiable dependency resolution.
      JavaScript
      0070Updated Apr 28, 2026Apr 28, 2026
    • Lockfiles for Maven. Pin your dependencies. Build with integrity.
      Java
      MIT License
      2061215Updated Apr 27, 2026Apr 27, 2026
    • Break the build if your supply chain is dirty
      MIT License
      0265Updated Apr 27, 2026Apr 27, 2026
    • bump

      Public
      A dataset of reproducible breaking dependency updates, SANER 2024 (https://doi.org/10.1109/SANER60148.2024.00024)
      Java
      MIT License
      92266Updated Apr 27, 2026Apr 27, 2026
    • swag

      Public
      software supply chain art
      Java
      12111Updated Apr 23, 2026Apr 23, 2026
    • automatically detect software supply chain smells and issues http://arxiv.org/pdf/2410.16049
      Python
      MIT License
      618303Updated Apr 14, 2026Apr 14, 2026
    • sbom.exe

      Public
      calls the police if a prohibited class is loaded by the JVM http://arxiv.org/pdf/2407.00246
      Java
      MIT License
      1997Updated Apr 10, 2026Apr 10, 2026
    • bacardi

      Public
      fix breaking dependency updates 🛠️
      Java
      MIT License
      3460Updated Apr 9, 2026Apr 9, 2026
    • Claude Code is an agentic coding tool that lives in your terminal, understands your codebase, and helps you code faster by executing routine tasks, explaining c…
      TypeScript
      Other
      3.2k000Updated Apr 1, 2026Apr 1, 2026
    • reproducible build study of javascript bundling (thesis E. Vitell)
      Python
      0000Updated Mar 22, 2026Mar 22, 2026
    • spoon

      Public
      Perpetual automerge with CI for Spoon
      Java
      Other
      3830110Updated Mar 9, 2026Mar 9, 2026
    • Scripts used to retrieve data and acquire results for dirty-waters
      Jupyter Notebook
      0000Updated Feb 23, 2026Feb 23, 2026
    • Rust
      0000Updated Feb 22, 2026Feb 22, 2026
    • oZKS

      Public
      oZKS (Ordered Zero-Knowledge Set) is a library that provides an implementation of an Ordered (and Append Only) Zero-Knowledge Set.
      C++
      MIT License
      6000Updated Feb 17, 2026Feb 17, 2026
    • pypi1000

      Public
      1000 Github repositories on Pypi
      Python
      0000Updated Feb 9, 2026Feb 9, 2026
    • Java-Class-Hijack: Software Supply Chain Attack for Java based on Maven Dependency Resolution and Java Classloading
      Java
      1300Updated Jan 30, 2026Jan 30, 2026
    • Experiments related to the Classport projects
      Java
      0010Updated Jan 21, 2026Jan 21, 2026
    • classport

      Public
      Passports for Java class files
      Java
      MIT License
      12140Updated Jan 20, 2026Jan 20, 2026
    • Java
      0010Updated Nov 25, 2025Nov 25, 2025
    ProTip! When viewing an organization's repositories, you can use the props. filter to filter by custom property.