$npx skillfedfor your agent

sarif-om

Classes implementing the SARIF 2.1.0 object model.

With conditionsPyPI Python ModulesReleased Oct 20193.1M downloads / moMITPure Python

Decision gist · record as of 2026-08-14

pure-Python wheel — sarif_om-1.0.4-py3-none-any.whl
v1.0.4 · released 2019-10-05 · Python >= 2.7 · 2 runtime deps: attrs, pbr

Yes, if you need to work with SARIF 2.1.0 in Python. The package is stable, permissively licensed, and has no known vulnerabilities. Its dormancy is not a risk—SARIF is a fixed standard and the generated classes are unlikely to need updates. Install it for any tool that must emit or consume SARIF reports.AI-flagged interpretation of the facts on this page — verify before relying

Before you install

  • Low install friction with only two lightweight runtime dependencies (attrs and pbr).
  • The package is dormant—last release was 2019-10-05 and last commit 2024-04-03—so expect no active maintenance, though the underlying SARIF specification it implements is stable.

License · maintenance · safety

MIT (permissive) — MIT license is permissive, allowing free use, modification, and distribution with minimal restrictions.

last release 2019-10-05 (2505 days) · last repo commit 2024-04-03 · 46 stars

0 known vulnerabilities (OSV.dev, 2026-08-14) · 3,135,323 downloads/mo, #2,732 on PyPI

Verify before relying

pip install sarif-om

import sarif_om

log = sarif_om.SarifLog()
  • Whether the generated classes fully cover all SARIF 2.1.0 schema features and edge cases in practice.
  • Current compatibility with modern Python versions beyond what 'supports_current' indicates.
  • Whether the 2024-04-03 commit represents active maintenance or a minor fix.
Same gist for agents: .md · .json

What it is and what it does

This package is a collection of Python classes auto-generated from the SARIF 2.1.0 JSON schema. SARIF is an OASIS standard for representing static analysis tool results in a machine-readable, vendor-neutral format. The package lets you construct, read, and manipulate SARIF objects programmatically in Python using attrs-based classes that mirror the official schema structure.

The classes were generated from the official SARIF schema, so they track the specification closely. You import the package and work with classes like SarifLog to build or parse SARIF documents. It's a thin, schema-faithful wrapper with minimal dependencies (attrs and pbr), suitable for tools that need to emit or consume SARIF reports.

Use it for

  • Build a static analysis tool that outputs results in SARIF format for integration with other security or code-quality platforms.
  • Parse SARIF reports from third-party analysis tools to aggregate or transform results programmatically.
  • Validate or transform SARIF documents within a larger CI/CD pipeline.
  • Generate standardized security or code-quality reports that other tools can consume via SARIF.
  • Create a SARIF viewer or dashboard that reads and displays analysis results from multiple tools.

Worth the install?

AI-flagged interpretation of the facts on this page. Verify before relying on it.

With conditions

Yes, if you need to work with SARIF 2.1.0 in Python.

The package is stable, permissively licensed, and has no known vulnerabilities. Its dormancy is not a risk—SARIF is a fixed standard and the generated classes are unlikely to need updates. Install it for any tool that must emit or consume SARIF reports.

Install

sarif-om on PyPI

Before you install

Low install friction with only two lightweight runtime dependencies (attrs and pbr). The package is dormant—last release was 2019-10-05 and last commit 2024-04-03—so expect no active maintenance, though the underlying SARIF specification it implements is stable.

License in practice

MIT license is permissive, allowing free use, modification, and distribution with minimal restrictions.

Quickstart

pip install sarif-om

import sarif_om

log = sarif_om.SarifLog()

Verify before relying

  • Whether the generated classes fully cover all SARIF 2.1.0 schema features and edge cases in practice.
  • Current compatibility with modern Python versions beyond what 'supports_current' indicates.
  • Whether the 2024-04-03 commit represents active maintenance or a minor fix.

Package facts

LicenseMIT permissive
Python supportSupports the current Python release >= 2.7
Install frictionLow. Pure-Python wheel
Runtime dependencies
2 packages
attrspbr
MaintenanceDormant 2,505 days since the last release
Last repo commit
First released
Downloads3,135,323 / month, #2,732 on PyPI 30-day window, as of 2026-08-14
Known vulnerabilitiesNone known OSV.dev, checked 2026-08-14
Classifiers
Development Status :: 5 - Production/StableEnvironment :: ConsoleIntended Audience :: DevelopersIntended Audience :: Information TechnologyLicense :: OSI Approved :: MIT LicenseOperating System :: OS IndependentProgramming Language :: PythonTopic :: Software Development :: Libraries :: Python Modules

Evidence: sarif_om-1.0.4-py3-none-any.whl

Tags

Capabilities
SARIF object model Pythonstatic analysis results formatSARIF 2.1.0 classesanalysis results interchangeOASIS SARIF implementationstatic analysis reporting
Topics
static-analysissarif-formatcode-quality

Let your AI agent find packages like this

Example. Real query, live index.

You found this page by searching. An agent finds it by wishing: SkillFed indexes 14,416 PyPI packages by what they can do, searchable in plain language.

wish › “SARIF object model Python”

  • sarif-omProvides Python classes implementing the SARIF 2.1.0 object model for…
  • bandit-sarif-formatterConverts Bandit security analysis output into SARIF 2.1.0 format for…
  • sarif-toolsParses, analyzes, and transforms SARIF (Static Analysis Results…

Give your agent the search over MCP, or paste the wish link into any chat.

More Python Modules packages

idna Worth it
PyPI · Python Modules · released Jun 2026

Converts domain names between Unicode and ASCII-compatible encoding (Punycode) according to IDNA 2008 and Unicode Technical Standard 46, with security validation and broader script coverage than the standard library.

Install it if you work with internationalized domain names, need to validate domains, or use HTTP clients that depend on it transitively.

BSD-3-Clausepure Python · 3.9+
1.8Bdownloads / mo
setuptools Worth it
PyPI · Python Modules · released Aug 2026

Setuptools is a Python build backend and package management tool that handles building, distributing, and installing Python packages, including support for C/C++ extension modules.

MITpure Python · 3.10+
1.6Bdownloads / mo
PyYAML Worth it
PyPI · Python Modules · released Sep 2025

PyYAML parses and emits YAML 1.1 data format, enabling serialization and deserialization of configuration files and Python objects to and from human-readable YAML text.

MITcompiled wheel · 3.8+
1.2Bdownloads / mo
pydantic Worth it
PyPI · Python Modules · released May 2026

Pydantic validates Python data structures against type hints, coercing and checking input at runtime to ensure it matches a declared schema.

MITpure Python · 3.9+
1.1Bdownloads / mo
annotated-types Worth it
PyPI · Python Modules · released Jul 2026

Provides reusable metadata objects for use with PEP-593 `typing.Annotated` to express common constraints like bounds, collection sizes, and predicates on types.

Install it if you use or build libraries that need to express type constraints in a standardized, inspectable way—or if you want to annotate your own types with…

MITpure Python · 3.10+
871.3Mdownloads / mo
typing-inspection Worth it
PyPI · Python Modules · released Aug 2026

Provides runtime tools to inspect and introspect Python type annotations, enabling programmatic examination of type hints at execution time.

MITpure Python · 3.10+
783.0Mdownloads / mo

See also bandit-sarif-formatter · sarif-tools · jschema-to-python · pydifact · somacore · onnxconverter-common · standard-aifc · interchange · stix2 · microsoft-kiota-http