The Evidence Store for Your Entire Supply Chain. SBOMs, xBOMs and every other artifact - stored for 10+ years, versioned and audit-ready.
-
Updated
Dec 14, 2025 - Java
The Evidence Store for Your Entire Supply Chain. SBOMs, xBOMs and every other artifact - stored for 10+ years, versioned and audit-ready.
☕ Streamline JVM workloads with hardened OCI images preinstalled with Temurin JDK 25 and JDK 26, ensuring security and performance for your applications.
🚛 Optimize freight routing with machine learning and linear programming to reduce costs and delays across 37 logistics hubs in the Northeastern U.S.
🚚 Optimize inventory transfers between Canada and the US with advanced forecasting, intelligent recommendations, and professional reporting tools.
📊 Building ML projects using Python, Scikit-learn & more.
CafeChain is a blockchain-based system designed to provide coffee consumers with full transparency about the journey of their coffee—from cultivation to consumption.☕🌱
This project helps reduce walking time in warehouses using a Python tool that simulates picking routes. Users can test strategies like wave picking and clustering on a 2D layout to find the most efficient method.
Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server
🌾 Optimize food distribution by matching India's surplus grain with UAE demand through a clear, data-driven prototype that minimizes waste and costs.
Deleted & Revived PyPI Package Indexes
Analyses and pins GitHub actions in your workflows.
Node.js implementation, using Azure as a backend, of a system for Global Distributed Tracking, a free-of-charge, free-software system for building up a provenance or history of objects/assets/devices.
Throw a tag at it and it comes back with a checksum.
🔴🟡🟢 The Amazing Multipurpose Policy Engine (and L)
A Sigstore client written in Python
A GitHub Action for sigstore-python
A tool to create, transform and attest VEX metadata
Code-signing for npm packages
Add a description, image, and links to the supply-chain topic page so that developers can more easily learn about it.
To associate your repository with the supply-chain topic, visit your repo's landing page and select "manage topics."