We are Anchore. Securing and managing the software supply chain. Proud parents of Syft and Grype
We regularly write about what we're working on; here are some recent blog posts:
- Meeting 2025’s SBOM Compliance Deadlines: A Practical Implementation Guide Pt. 2 (today)
- Minutes vs. Months: The SBOM Advantage in Zero-Day Response (1 week ago)
- Streamline Vulnerability Management: From Minimal Images to Comprehensive SBOM Analysis (1 week ago)
- OpenSSF SBOM Coffee Club is exactly what you think it is (1 week ago)
- Meeting 2025’s SBOM Compliance Deadlines: A Practical Implementation Guide (2 weeks ago)
We discuss our open source tools on Discourse. Here are some recent topics:
- Any plans for AIBOM using Syft or Grype (today)
- Reducing 'unknowns' via targeted fuzzy binary catalogers (1 day ago)
- Grype .98 misidentifies package versions (1 day ago)
- Anchore Open Source Weekly Report - Week 34, 2025 (1 day ago)
- Why does local anchore/syft image take up more space than reported on DockerHub page? (1 day ago)