A curated list of SBOM (Software Bill Of Materials) related tools, frameworks, blogs, podcasts, and articles
-
Updated
Nov 8, 2024
A curated list of SBOM (Software Bill Of Materials) related tools, frameworks, blogs, podcasts, and articles
A repository with examples of CycloneDX BOMs (SBOM, SaaSBOM, OBOM, VEX, etc)
SBOM quality score - Quality metrics for your sboms
Reference GitHub Workflows for SBOM generation from the CISA SBOM Generation Reference Implementation Tiger Team
Find & pull public SBOMs
This repo does contains an example of Jenkins/Github Pipeline and a Maven Project.
SBOMinify is a GitHub Action to capture and list installed packages and their versions in a Docker image, generating Software Bill of Materials (SBOM) files. This action leverages some special technics to scan Docker images and output SBOM files in both table and JSON formats.
This repo is for testing various SBOM and license scanning tools
Add a description, image, and links to the sbom-examples topic page so that developers can more easily learn about it.
To associate your repository with the sbom-examples topic, visit your repo's landing page and select "manage topics."