OpenChain-Project / SBOM-sg-SEPIALinks
The team at Bosch were working on a mapping of SPDX and CycloneDX on both property level (= syntax) and a semantic interpretation of the information. They wrote a schema that describes a bare minimum SBOM on semantic level, and a validator for this. This repo is to explore the work done.
☆12Updated 2 weeks ago
Alternatives and similar repositories for SBOM-sg-SEPIA
Users that are interested in SBOM-sg-SEPIA are comparing it to the libraries listed below
Sorting:
- Eclipse Tractus-X Industry Core Hub [IC-Hub] - The KIT/Use Case Speedway☆15Updated last week
- Python implementation of OWASP CycloneDX☆94Updated last week
- Vector Bazel Rules and Toolchains☆13Updated last week
- This repo contains license and copyright analysis results of open source packages. It further contains other license compliance relevant …☆52Updated this week
- ☆37Updated 10 months ago
- The SCANOSS python package providing a simple, easy to consume library for interacting with SCANOSS APIs/Engine.☆36Updated this week
- The model for the information captured in SPDX version 3 standard.☆94Updated last week
- This repo realizes the idea that OSS compliance activities will be less expensive by applying OSS principles☆90Updated 2 weeks ago
- This is the Mercedes-Benz FOSS Manifesto - our path to embrace Open Source☆83Updated 3 months ago
- Repository of workplace for the OpenChain Japan Work Group(JWG)☆10Updated 3 years ago
- This tool compares two Software Bill of Materials (SBOMs) and reports the differences.☆40Updated last year
- A collection of software to connect TAP devices under Linux and Windows to the Vector SIL Kit☆11Updated last month
- ☆20Updated 3 months ago
- This repository contains the reference material related to the OpenChain Project☆101Updated last week
- SW360 project☆195Updated this week
- A small application which needs a better name and collects oss-license metadata and combines it☆32Updated this week
- CaPyCLI - Python scripts for software license compliance automation with SW360☆19Updated last month
- The MobSTr dataset provides artifacts that demonstrate Model-based Safety Assurance and Traceability for a safety-critical automotive sys…☆10Updated 3 years ago
- Reference GitHub Workflows for SBOM generation from the CISA SBOM Generation Reference Implementation Tiger Team☆32Updated this week
- LogicNG for Rust☆11Updated 2 weeks ago
- free and open source software license compatibility tool.☆49Updated 7 months ago
- uServices - Open Vehicle Interfaces☆13Updated last year
- This repository stores meetings minutes for the SPDX project☆34Updated this week
- ☆24Updated last year
- Software Quality Management Tool☆37Updated this week
- Machine-readable specification for the attestation of security-relevant data.☆66Updated 2 months ago
- ☆15Updated last month
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆111Updated 2 weeks ago
- Validate the SPDX SBOM against NTIA, CISA, and other minimum element requirements.☆74Updated last week
- Plain text version of the OSADL Open Source Policy Template: The Basis for License Compliance☆20Updated 3 years ago