sbom topic

List sbom repositories

specification

446
Stars
79
Forks
446
Watchers

OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and V...

cyclonedx-maven-plugin

275
Stars
83
Forks
Watchers

Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects

syft

5.6k
Stars
511
Forks
Watchers

CLI tool and library for generating a Software Bill of Materials from container images and filesystems

cargo-auditable

579
Stars
25
Forks
Watchers

Make production Rust binaries auditable

component-detection

385
Stars
81
Forks
Watchers

Scans your project to determine what components you use

awesome-sbom

431
Stars
56
Forks
Watchers

A curated list of SBOM (Software Bill Of Materials) related tools, frameworks, blogs, podcasts, and articles

reuse-tool

356
Stars
134
Forks
Watchers

reuse is a tool for compliance with the REUSE recommendations.

dep-scan

889
Stars
88
Forks
Watchers

OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container ima...

kubeclarity

1.3k
Stars
157
Forks
Watchers

KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulnerabilities of container images and filesystems

HummerRisk

1.5k
Stars
237
Forks
Watchers

HummerRisk 是云原生安全平台,包括混合云安全治理和云原生安全检测。