Join us

ContentUpdates and recent posts about Syft..
Discovery IconThat's all about @Syft — explore more posts below...
 Activity
@eon01 added a new tool AWX , 12 hours, 54 minutes ago.
Course
@eon01 published a course, 13 hours ago
Founder, FAUN.dev

AWX in Action

Docker Ansible Kubernetes AWX

Ansible Orchestration at Scale

AWX in Action
 Activity
@harperelisecallahan started using tool WordPress , 20 hours, 19 minutes ago.
 Activity
@harperelisecallahan started using tool Shopify , 20 hours, 19 minutes ago.
 Activity
@harperelisecallahan started using tool React , 20 hours, 19 minutes ago.
 Activity
@harperelisecallahan started using tool Python , 20 hours, 19 minutes ago.
 Activity
@harperelisecallahan started using tool PHP , 20 hours, 19 minutes ago.
 Activity
@harperelisecallahan started using tool Node.js , 20 hours, 19 minutes ago.
 Activity
@harperelisecallahan started using tool Magento , 20 hours, 19 minutes ago.
 Activity
@harperelisecallahan started using tool Laravel , 20 hours, 19 minutes ago.
Syft, created by Anchore, is an open source Software Bill of Materials (SBOM) generator that analyzes container images, filesystems, repositories, and archives. It produces SBOMs in multiple standards, including SPDX, CycloneDX, and Syft's own JSON format. Syft identifies packages across ecosystems like Debian, Alpine, Python, Java, Ruby, Node.js, and Go. It integrates seamlessly with CI/CD pipelines, supports reproducible builds, and works alongside Grype for vulnerability scanning. Organizations rely on Syft to improve software supply chain transparency, meet compliance requirements, and enable automated security workflows.