GUAC
GUAC aggregates software security metadata into a high fidelity graph database.
About
Graph for Understanding Artifact Composition (GUAC) aggregates software security metadata into a high fidelity graph database—normalizing entity identities and mapping standard relationships between them. Querying this graph can drive higher-level organizational outcomes such as audit, policy, risk management, and even developer assistance.
Open Source Health
- Stars
- 1,541
- Forks
- 215
- License
- Apache-2.0
- Last commit
- 26 days ago
Resources & Links
Related Categories
Vendor
guacsec
Open-source project on GitHub: GUAC
Quick Links
Open Source
Related Products
Component Detection
Scans your project to determine what components you use
Top category match
Slsa
Supply-chain Levels for Software Artifacts
Top category match
MurphySec
An open source tool focused on software supply chain security. 墨菲安全专注于软件供应链安全,具备专业的软件成分分析(SCA)、漏洞检测、专业漏洞库。
Top category match
Sbom Tool
The SBOM tool is a highly scalable and enterprise ready tool to create SPDX 2.2 compatible SBOMs for any variety of artifacts.
Top category match
OpenSCA-cli
OpenSCA is an open source software supply chain security solution that supports the detection of open source dependencies, vulnerabilities and license compliance with a widely noticed accuracy by the community.
Top category match