sbom-utility icon indicating copy to clipboard operation
sbom-utility copied to clipboard

Support OWASP SCVS "Profiles" for use in validation, trimming, etc. commands

Open mrutkows opened this issue 9 months ago • 0 comments

See standardized profiles: https://scvs.owasp.org/bom-maturity-model/profiles/examples/ntia-minimum-elements/

Also, see how they are being used in BOM generation (which could be used to create test/input data):

  • https://github.com/CycloneDX/cdxgen and its "--profile" flag/option.

Note: profile usage/use cases will require some really good documentation to convey understanding with great references...

mrutkows avatar Nov 09 '23 15:11 mrutkows