* [vet v1.19.0](https://github.com/safedep/vet) – Enterprise-grade software supply chain security tool with real-time malicious package detection and policy as code support. * [sbom-operator 0.44.5](https://github.com/ckotzbauer/sbom-operator) – Catalog all Kubernetes cluster container images and generate SBOMs with Syft, storing results to Git, Dependency-Track, OCI registries, or ConfigMaps. * [cicd-sensor releases/v0.0.45](https://github.com/cicd-sensor/cicd-sensor) – eBPF-powered runtime security sensor for detecting supply-chain attacks in CI/CD pipelines across GitHub Actions and GitLab CI/CD with logs and evidence.