We are Anchore. Securing and managing the software supply chain. Proud parents of Syft and Grype
We regularly write about what we're working on; here are some recent blog posts:
- STIG in Action: Continuous Compliance with MITRE & Anchore (2 days ago)
- Community Spotlight: MegaLinter (3 days ago)
- DORA + SBOM Primer: Achieving Software Supply Chain Security in Regulated Industries (3 days ago)
- How Syft Scans Software to Generate SBOMs (1 week ago)
- SBOMs 101: A Free, Open Source eBook for the DevSecOps Community (1 week ago)
We discuss our open source tools on Discourse. Here are some recent topics:
- Online documentation for anchorectl (2 days ago)
- How to help development teams to fix vulnerable packages identified by Syft? (2 days ago)
- February 13th | Open Source Gardening | Live Stream (5 days ago)
- Per commit performance tests (1 week ago)
- Reducing number of duplications from VM \ kernel scan (1 week ago)