We are Anchore. Securing and managing the software supply chain. Proud parents of Syft and Grype
We regularly write about what we're working on; here are some recent blog posts:
- Expert Series: Solving Real-World Challenges in FedRAMP Compliance (4 days ago)
- How to build an OSS vulnerability management program (5 days ago)
- Accelerate FedRAMP Compliance on Amazon EKS with Anchore (1 week ago)
- TD Synnex Inspire (1 week ago)
- All Things Open Conference (1 week ago)
We discuss our open source tools on Discourse. Here are some recent topics:
- September 19 | Open Source Gardening | Live Stream (3 days ago)
- Revisiting ownership-by-file-overlap relationships (6 days ago)
- Does Grype fetches data from different sources or only from NVD (6 days ago)
- Trying to understand sha256 output in syft spdx-json (1 week ago)
- September 12 | Community Meeting Zoom Call (1 week ago)