We are Anchore. Securing and managing the software supply chain. Proud parents of Syft and Grype
We regularly write about what we're working on; here are some recent blog posts:
- Contributing to Vulnerability Data: Making Security Better for Everyone (today)
- Software Supply Chain Transparency: Why SBOMs Are the Missing Piece in Your ConMon Strategy (2 days ago)
- Securing Open Source Software Supply Chains – The Next Frontier of Innovation (6 days ago)
- Rapid Incident Response to Zero-Day Vulnerabilities with SBOMs (6 days ago)
- How to Automate Container Vulnerability Scanning for Harbor Registry with Anchore Enterprise (1 week ago)
We discuss our open source tools on Discourse. Here are some recent topics:
- Does Syft automaticaly detects existing SBOM files? (today)
- March 20th | Open Source Gardening | Live Stream (2 days ago)
- Grype - v0.90.0 released (3 days ago)
- Syft - v1.21.0 released (3 days ago)
- Stereoscope - v0.1.0 released (3 days ago)