{"repo":"anchore/grant","free":true,"listed":false,"github":"https://github.com/anchore/grant","clone":"git clone https://github.com/anchore/grant.git","description":"A license scanner for container images and filesystems.","language":"Go","stars":183,"topics":["compliance","license","sbom","golang","static-analysis"],"license":"Apache-2.0","category":"dev-tools","readme_excerpt":"Grant A CLI tool and Go library for checking licenses in container images, SBOMs, and filesystems. Works seamlessly with Syft for license investigation and policy enforcement. Features - Check licenses in container images , SBOMs , and filesystems - Categorize licenses by risk level (permissive, weak copyleft, strong copyleft) - Define and enforce license policies with allow/deny lists - Works seamlessly with Syft SBOMs - Multiple output formats ( table , JSON ) for CI/CD integration [!TIP] New to Grant? Check out the Getting Started guide for a walkthrough! Installation The quickest way to get up and going: [!TIP] See Installation docs for more ways to get Grant! The basics List licenses within a container image or directory: Check licenses against a policy: [!TIP] Check out the Getting Started guide to explore all of the capabilities and features. Want to define license policies? Check out the policy guide. Contributing We encourage users to help make these tools better by submitting issues when you find a bug or want a new feature. Check out our contributing overview and developer-specific documentation if you are interested in providing code contributions. Grant development is sponsored by Anchore, and is released under the Apache-2.0 License. For commercial support options, please contact Anchore.","default_branch":null,"files":null,"tree":[],"storefront":"/r/anchore","claimed":false,"request_supported":{"post":"https://gitbuyer.com/r/anchore/grant/request-supported","requests":0},"note":"indexed from public GitHub; nothing is for sale on this page. Clone it from GitHub. Paid listings live at /search."}