Skip to content
View andrewpollock's full-sized avatar

Block or report andrewpollock

Block user

Prevent this user from interacting with your repositories and sending you notifications. Learn more about blocking users.

You must be logged in to block users.

Please don't include any personal information such as legal names or email addresses. Maximum 100 characters, markdown supported. This note will be visible to only you.
Report abuse

Contact GitHub support about this user’s behavior. Learn more about reporting abuse.

Report abuse
andrewpollock/README.md

G'day 👋

I'm an independent generalist technologist with an interest in open source vulnerability management and related software supply chain security.

Most recently, I've worked as a Software Engineer on Google's Open Source Security Team (GOSST) working on OSV.dev.

I'm passionate about a solid foundation of machine-readable vulnerability metadata for known vulnerability detection/remediation/prevention (aka "management").

Pinned Loading

  1. ossf/osv-schema Public

    Open Source Vulnerability schema.

    Go 202 96

  2. google/osv.dev Public

    Open source vulnerability DB and triage service.

    Python 1.9k 213

  3. google/osv-scanner Public

    Vulnerability scanner written in Go which uses the data provided by https://osv.dev

    Go 7.5k 431

  4. github/advisory-database Public

    Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.

    1.9k 438

  5. mprpic/cvelint Public

    CLI tool to validate CVE v5 JSON records.

    Go 9 2

  6. ossf/wg-best-practices-os-developers Public

    The Best Practices for OSS Developers working group is dedicated to raising awareness and education of secure code best practices for open source developers.

    JavaScript 885 166

803 contributions in the last year

Skip to contributions year list
Contribution Graph
Day of Week June July August September October November December January February March April May June
Sunday
Monday
Tuesday
Wednesday
Thursday
Friday
Saturday
Less
No contributions.
Low contributions.
Medium-low contributions.
Medium-high contributions.
High contributions.
More

Contribution activity

June 2025

Created 2 commits in 1 repository
Created 1 repository

Created a pull request in ossf/wg-best-practices-os-developers that received 1 comment

Remove mention of archived repo

This removes the mention of and outlink to the package-manager-best-practices repo, given the repo is archived.

+1 −1 lines changed 1 comment
Opened 1 other pull request in 1 repository
andrewpollock/vuln-conversion 1 merged
Loading