Software
CRACI
A runner for GitHub Actions that records packages fetched during a job and generates build‑time SBOMs.
by CRACI
Software
craci.com/compare/software-supply-chain-security-tools- Milestones0
- Sources1
- Operators—
- Components—
Software · No licensed photo on file
A runner for GitHub Actions that records packages fetched during a job and generates build‑time SBOMs.
Timeline
No milestones recorded for CRACI yet. The timeline fills in as unveilings, tests, contracts and deliveries are sourced.
Sources1
- 1.
CRACI · Supports: System
“CRACI is a runner for GitHub Actions. You change `runs-on` to `craci`, and while each job runs, a package-aware proxy records what it fetched, including packages restored from CI caches. Each SBOM carries a completeness state per job and per cache, an egress policy is validated before the job starts and fails closed, and CRACI keeps re-evaluating the SBOMs of what shipped”
Each fact on this page is attached to the sources that support it. Archived copies are linked when we keep one.
