We are Anchore. Securing and managing the software supply chain. Proud parents of Syft and Grype
We regularly write about what we're working on; here are some recent blog posts:
- Packages, Policies, and Performance: What’s New in Grant (2 days ago)
- Meeting 2025’s SBOM Compliance Deadlines: A Practical Implementation Guide Pt. 2 (3 days ago)
- Minutes vs. Months: The SBOM Advantage in Zero-Day Response (1 week ago)
- Streamline Vulnerability Management: From Minimal Images to Comprehensive SBOM Analysis (2 weeks ago)
- OpenSSF SBOM Coffee Club is exactly what you think it is (2 weeks ago)
We discuss our open source tools on Discourse. Here are some recent topics:
- "we track the complete list in our open source SBOM eBook." - the repo is gone (today)
- August 28th | Open Source Gardening | Live Stream (1 day ago)
- Grype - v0.99.0 released (2 days ago)
- Syft - v1.32.0 released (3 days ago)
- Any plans for AIBOM using Syft or Grype (3 days ago)