Scanner for vulnerabilities in container images, file systems, and Git repositories, as well as for configuration issues and hard-coded secrets.



sbomify action is described as 'Generates SBOMs during CI from lockfiles, containers, and directories using native tooling with ecosystem coverage, metadata enrichment, trusted outputs, and OIDC publishing' and is an app. There are 1 alternatives to sbomify action for Mac, Linux and Docker. The best sbomify action alternative is Trivy, which is both free and Open Source.
Scanner for vulnerabilities in container images, file systems, and Git repositories, as well as for configuration issues and hard-coded secrets.


