Open-source atomic malware analysis

Analyze another

anchore/sbom-action v0.18.0

GZ
Verdict: BENIGN
“GitHub Action for creating software bill of materials using Syft.”

Loading file contents…

Loading traits…

Identity

SHA-256 76308ef5ccfadcd69d6b2c988c0da2e55ecc9b01b62a22e834025ecca962fb9d
Canonical SHA-256 00fbea8fe969065084e1ff61495fdd0445946505f2bda0e1a575eee2202e21d6
Filename [email protected]
Package anchore/sbom-action
Version v0.18.0
PURL pkg:github/anchore/[email protected]

Origin

Source x
Feed pkg.go.dev
Ecosystem github
Domain github.com
URL https://codeload.github.com/anchore/sbom-action/tar.gz/v0.18.0

Timeline

First seen 12 Aug 2026 14:29 UTC
First analyzed 12 Aug 2026 14:31 UTC
Last analyzed 25 Aug 2026 17:46 UTC
Last updated 25 Aug 2026 17:46 UTC

Labeling

Label unknown
Traits version 72034