cyclonedx-rust-cargo
cyclonedx-rust-cargo copied to clipboard
Creates CycloneDX Software Bill of Materials (SBOM) from Rust (Cargo) projects
CycloneDX Rust (Cargo) Plugin
The CycloneDX module for Rust (Cargo) creates a valid CycloneDX Software Bill of Materials (SBOM) containing an aggregate of all project dependencies. OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard providing advanced supply chain capabilities for cyber risk reduction.
Structure
This repository contains two separate projects:
cyclonedx-bomis a Rust library to read and write CycloneDX SBOMs to and from Rust structs.cargo-cyclonedxis a Rust application, which generates CycloneDX SBOMs for Cargo based Rust projects (it usescyclonedx-bomfor that purpose).
Usage
Execute cargo-cyclonedx from within a Rust project directory containing Cargo.toml.
Installing
cargo install cargo-cyclonedx
Executing binary
~/.cargo/bin/cargo-cyclonedx cyclonedx
Executing from cargo
cargo cyclonedx
Contributing
Contributions are welcome.
See our CONTRIBUTING.md for details.
Copyright & License
CycloneDX Rust Cargo is Copyright (c) OWASP Foundation. All Rights Reserved.
Permission to modify and redistribute is granted under the terms of the Apache 2.0 license. See the LICENSE file for the full license.