nikstur/bombon

Nix CycloneDX Software Bills of Materials (SBOMs)

GitHub repository with 141 stars and 12 forks.

Language: Rust

Topics: cyclonedx, nix, nixos, sbom, bill-of-materials, bom, software-bill-of-materials, license, sbom-generator, components

Open provider repository

Latest metric snapshot

2026-06-05: 141 stars and 12 forks.

Trending in Rust

  1. 1. BigPizzaV3/CodexPlusPlus

    An enhanced tool for CodexApp, striving to make Codex better to use and more comfortable 一个CodexApp的增强工具,努力让Codex变得更好用更舒服

    GitHub repository with 13,864 stars and 857 forks.

    Trending score: 5.16; stars gained: +916; forks gained: +44.

    Language: Rust

  2. 2. rtk-ai/rtk

    CLI proxy that reduces LLM token consumption by 60-90% on common dev commands. Single Rust binary, zero dependencies

    GitHub repository with 59,069 stars and 3,636 forks.

    Trending score: 4.96; stars gained: +654; forks gained: +44.

    Language: Rust

    Topics: agentic-coding, ai-coding, anthropic, claude-code, cli, command-line-tool

  3. 3. openai/codex

    Lightweight coding agent that runs in your terminal

    GitHub repository with 88,860 stars and 13,058 forks.

    Trending score: 4.58; stars gained: +326; forks gained: +48.

    Language: Rust

  4. 4. tinyhumansai/openhuman

    Your Personal AI super intelligence. Private, Simple and extremely powerful.

    GitHub repository with 30,855 stars and 2,978 forks.

    Trending score: 4.37; stars gained: +332; forks gained: +50.

    Language: Rust

  5. 5. fallow-rs/fallow

    Codebase intelligence for TypeScript and JavaScript. Free static layer: unused code, duplication, circular deps, complexity hotspots, architecture boundaries. Optional paid runtime layer: hot-path review and cold-path deletion evidence from real production traffic. Rust-native, sub-second, zero-config framework support.

    GitHub repository with 3,087 stars and 95 forks.

    Trending score: 4.05; stars gained: +346; forks gained: +16.

    Language: Rust

    Topics: cli, code-duplication, code-quality, codebase-intelligence, copy-paste-detection, dead-code

  6. 6. aaif-goose/goose

    an open source, extensible AI agent that goes beyond code suggestions - install, execute, edit, and test with any LLM

    GitHub repository with 46,568 stars and 4,863 forks.

    Trending score: 3.80; stars gained: +152; forks gained: +28.

    Language: Rust

    Topics: acp, ai, ai-agents, mcp

Trending topic: cyclonedx

  1. 1. oss-review-toolkit/ort

    A suite of tools to automate software compliance checks.

    GitHub repository with 2,026 stars and 381 forks.

    Trending score: 1.36; stars gained: +2; forks gained: +1.

    Language: Kotlin

    Topics: package-manager, dependencies, dependency-graph, license, copyright, spdx

  2. 2. anchore/syft

    CLI tool and library for generating a Software Bill of Materials from container images and filesystems

    GitHub repository with 9,067 stars and 871 forks.

    Trending score: 1.04; stars gained: +11; forks gained: +3.

    Language: Go

    Topics: containers, cyclonedx, docker, go, golang, hacktoberfest

  3. 3. msaad00/agent-bom

    AI supply-chain security scanner and self-hosted control plane for agents, MCP, SBOM/SARIF, graph findings, runtime enforcement, and compliance evidence.

    GitHub repository with 22 stars and 8 forks.

    Trending score: 0.61; stars gained: +0; forks gained: +0.

    Language: Python

    Topics: ai-security, mcp, sbom, vulnerability-scanning, aibom, blast-radius

  4. 4. eclipse-apoapsis/ort-server

    A scalable server implementation of the OSS Review Toolkit.

    GitHub repository with 66 stars and 21 forks.

    Trending score: 0.51; stars gained: +1; forks gained: +0.

    Language: Kotlin

    Topics: compliance, cyclonedx, hacktoberfest, ospo, oss-compliance, oss-review-toolkit

  5. 5. hermetoproject/hermeto

    Hermeto is a CLI tool that prefetches project dependencies for hermetic container builds.

    GitHub repository with 54 stars and 101 forks.

    Trending score: 0.49; stars gained: +2; forks gained: +1.

    Language: Python

    Topics: sbom, sbom-generator, supply-chain-security, container-image, prefetching, sbom-quality

  6. 6. cdxgen/cdxgen

    Creates CycloneDX Bill of Materials (BOM) for your projects from source and container images. Supports many languages and package managers. Integrate in your CI/CD pipeline with automatic submission to Dependency Track server

    GitHub repository with 979 stars and 253 forks.

    Trending score: 0.41; stars gained: +1; forks gained: +1.

    Language: JavaScript

    Topics: bom, sca, cyclonedx, sbom, docker, oci