When a new vulnerability drops, the first question is always: Is this in my supply chain? π
By ingesting and enriching #SBOMs with vulnerability and dependency data, #GUAC lets you query your entire application portfolio and pinpoint where action is needed immediately.
When it comes to 1-Across, I unfortunately know of which I speak! 'Tis the season, I suppose. Click below for direct access to "Guac-Topped 'Dillas" and remember to check your Vitamin C supplies! ;)
How do you prove your open source project is secure in minutes, not weeks?
#GUAC did it using #OpenSSFβs #OSPSBaseline + #LFX Insights.
Faster trust. Less friction. More time to build!
Read the full story: https://openssf.org/blog/2025/08/14/case-study-how-lfx-insights-and-osps-baseline-validated-guacs-security-in-under-an-hour/
π₯ #GUAC 1.0 is here!
With 400+ contributors across 90+ orgsβGUAC helps teams tame the #SBOM monster πΎ by enriching and connecting metadata across your entire ecosystem.
π Read the blog to learn how GUAC is evolving software supply chain security: https://openssf.org/blog/2025/06/12/guac-1-0-is-now-available/
Big news in supply chain security: GUAC v1.0 is now available! Started by Kusari, Google, and Purdue University, GUAC has contributions from over 400 people representing more than 90 organizations including Microsoft and Red Hat. GUAC v1.0 brings several bug fixes since the v0.14.0 release, but is primarily a marker of whatβs considered stable. Whatβs stable Users can rely on the behavior of the elements listed blow not changing in an incompatible way.
My Smoked Santa Fe Burger. Consists of a 1/4 pound ground sirloin patty seasoned with fajita seasoning. #Smoked (mesquite) low and slow for 30 minutes and topped with Pepperjack cheese and pico de gallo. Fresh guacamole on both buns that were also grilled. Amazing.
#Guac: avocado, tomato, serrano, shallot, cilantro, lime juice, Johnnyβs Seasoning Salt.
#Pico: tomato, jalapeno, cilantro, red onions, lime juice, salt.