We are Anchore. Securing and managing the software supply chain. Proud parents of Syft and Grype
We regularly write about what we're working on; here are some recent blog posts:
- Minutes vs. Months: The SBOM Advantage in Zero-Day Response (today)
- Streamline Vulnerability Management: From Minimal Images to Comprehensive SBOM Analysis (4 days ago)
- Unmasking Hidden Risks: A Deep Dive into SBOM & EOL Detection with Syft & XEOL (5 days ago)
- OpenSSF SBOM Coffee Club is exactly what you think it is (6 days ago)
- Meeting 2025’s SBOM Compliance Deadlines: A Practical Implementation Guide (1 week ago)
We discuss our open source tools on Discourse. Here are some recent topics:
- PURL is empty for "graalvm-native-image-cataloger" (1 day ago)
- August 21st | Open Source Gardening | Live Stream (1 day ago)
- Anchore Open Source Weekly Report - Week 33, 2025 (1 day ago)
- Vcpkg custom registry (4 days ago)
- Syft - v1.31.0 released (6 days ago)