sbom topic
specification
OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and V...
cyclonedx-maven-plugin
Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects
syft
CLI tool and library for generating a Software Bill of Materials from container images and filesystems
cargo-auditable
Make production Rust binaries auditable
component-detection
Scans your project to determine what components you use
awesome-sbom
A curated list of SBOM (Software Bill Of Materials) related tools, frameworks, blogs, podcasts, and articles
reuse-tool
reuse is a tool for compliance with the REUSE recommendations.
dep-scan
OWASP dep-scan is a next-generation security and risk audit tool based on known vulnerabilities, advisories, and license limitations for project dependencies. Both local repositories and container ima...
kubeclarity
KubeClarity is a tool for detection and management of Software Bill Of Materials (SBOM) and vulnerabilities of container images and filesystems
HummerRisk
HummerRisk 是云原生安全平台,包括混合云安全治理和云原生安全检测。