Evidence-grounded cryptographic inventory and post-quantum migration planning for software repositories. Local static analysis, zero mandatory runtime dependencies, SARIF and CycloneDX output.
-
Updated
Sep 5, 2026 - Python
Evidence-grounded cryptographic inventory and post-quantum migration planning for software repositories. Local static analysis, zero mandatory runtime dependencies, SARIF and CycloneDX output.
Semantic SBOM/CBOM/AI-BOM diff, quality scoring, and compliance validation for CycloneDX/SPDX — component, license, and vulnerability change analysis, cryptographic inventory grading, PQC readiness (CNSA 2.0, NIST IR 8547), and regulatory gates for NTIA, FDA, EU CRA, BSI TR-03183, EUCC, SSDF, EO 14028, and the EU AI Act.
A toolset for dealing with Cryptography Bill of Materials (CBOM)
This repository contains a SonarQube Plugin that detects cryptographic assets in source code and generates CBOM.
GitHub Action to generate Cryptography Bill of Materials (CBOM)
Cryptographic asset inventory and evidence collection for quantum-readiness and post-quantum migration planning.
Enterprise post-quantum security infrastructure for cryptographic discovery, governed migration, KMS, secrets, encrypted storage, audit evidence, and AI workloads.
Repository for uploading, retrieving, and searching Cryptographic Bills of Materials (CBOM) documents.
Enterprise Cryptographic Discovery & Analysis Tool — discover, inventory, assess, and prioritize cryptographic assets for post-quantum migration
Curated CBOM (Cryptographic Bill of Materials) tools, cryptographic discovery scanners, PQC migration resources, crypto-agility frameworks and regulatory updates.
Synthetic PQC migration reference architecture with React, TypeScript, Go, evidence-fusion contracts, and bounded NIST traceability.
ASTRA by Team HEXARK is an open-source cryptographic discovery and CBOM prototype aligned with SIH26164 (ECDAT). Scan source, manifests, configs and certificates, evaluate Mosca PQC migration risk, and export CycloneDX 1.6 CBOM.
Post-quantum cryptography reference studio (NIST FIPS 203/204/205)
From Q-Day to Exposure Curves: a capability-conditioned framework for post-quantum migration. Paper, LaTeX source, and the script that produces every number in it.
Browser-based Harvest-Now-Decrypt-Later risk simulator built around the Mosca Inequality (X+Y>Z). 20+ algorithms, 4 CRQC scenarios, 5 org profiles, and cost-of-delay projections using 2025 GRI expert estimates.
Evidence-first synthetic cryptographic mission twin for post-quantum migration planning
Inventaire cryptographique et migration post-quantique : CBOM CycloneDX 1.6, constats de securite, catalogue d'algorithmes. Cryptographic inventory (CBOM) for Git repositories and local folders.
To associate your repository with the cryptographic-inventory topic, visit your repo's landing page and select "manage topics."