back to article Google says slap some GUAC on your software supply chain

Google has released a new open source software tool to help businesses better understand the risks to their software supply chains by aggregating security metadata into a queryable, standardized database. The Graph for Understanding Artifact Composition, or "GUAC" – pronounced like the avocado dip – "aggregates and synthesizes …

  1. fidodogbreath


    "aggregates and synthesizes software security metadata at scale and makes it meaningful and actionable"

    Should have called it Comprehensive Hyperscale Incremental Processing Of Tokenized Log Entries.

    GUAC is extra.

  2. Kevin McMurtrie Silver badge

    Endless brute force attacks from GCP

    One think Google's policy is "Always Not Us Security"

