We are Anchore. Securing and managing the software supply chain. Proud parents of Syft and Grype
We regularly write about what we're working on; here are some recent blog posts:
- Join Anchore Open Source Team: Live Stream (3 days ago)
- Anchore Community Spotlight: Nicolas Vuilamy from MegaLinter (3 days ago)
- FedRAMP Continuous Monitoring: Overview & Checklist (5 days ago)
- SBOM 101: A Guide for Developers, Security Engineers & the DevSecOps Community (1 week ago)
- Trust in the Supply Chain: CycloneDX Attestations & SBOMs (1 week ago)
We discuss our open source tools on Discourse. Here are some recent topics:
- Syft - v1.20.0 released (1 day ago)
- February 20th | Open Source Gardening | Live Stream (4 days ago)
- Online documentation for anchorectl (1 week ago)
- How to help development teams to fix vulnerable packages identified by Syft? (1 week ago)
- February 13th | Open Source Gardening | Live Stream (2 weeks ago)