We are Anchore. Securing and managing the software supply chain. Proud parents of Syft and Grype
We regularly write about what we're working on; here are some recent blog posts:
- Accelerate & Secure: Optimizing Your Software Supply Chain with DevSecOps (1 day ago)
- Cloud Native Now 2025 (1 day ago)
- A Zero-day Incident Response Story from the Watchers on the Wall (2 days ago)
- Cybersecurity Awareness Month no longer works (3 days ago)
- Generative AI in Risk and Compliance: Insights from the 2025 Industry Report (5 days ago)
We discuss our open source tools on Discourse. Here are some recent topics:
- Weak SSL config for https://grype.anchore.io (5 days ago)
- Not supported pnpm yet? (1 week ago)
- October 9th | Open Source Gardening | Live Stream (1 week ago)
- Corretly identifying jar file with only pom.xml (2 weeks ago)
- October 2nd | Open Source Gardening | Live Stream (2 weeks ago)