Reference GitHub Workflows for SBOM generation from the CISA SBOM Generation Reference Implementation Tiger Team
☆33Feb 2, 2026Updated 3 months ago
Alternatives and similar repositories for SBOM-Generation
Users that are interested in SBOM-Generation are comparing it to the libraries listed below. We may earn a commission when you buy through links labeled 'Ad' on this page.
Sorting:
- SBOM Explorer - Discover and pull public SBOMs☆21May 23, 2025Updated 11 months ago
- SBOM Move - Automate build and transfer of SBOMs across systems☆26Apr 20, 2026Updated last week
- Project providing insights on the metaeffekt license database.☆12Updated this week
- sbomify is a product security artifact hub and a trust center.☆51Updated this week
- Open source package corrections, policy rules and other configuration files for the OSS Review Toolkit.☆21Updated this week
- Managed Kubernetes at scale on DigitalOcean • AdDigitalOcean Kubernetes includes the control plane, bandwidth allowance, container registry, automatic updates, and more for free.
- Validate the SPDX SBOM against NTIA, CISA, and other minimum element requirements.☆86Apr 20, 2026Updated last week
- Improve Software Bill of Materials (SBOM) tooling and training to encourage adoption☆113Feb 28, 2026Updated 2 months ago
- The model for the information captured in SPDX version 3 standard.☆97Apr 25, 2026Updated last week
- Sbommage is an interactive terminal frontend for viewing Software Bill of Materials (SBOM) files in various formats.☆37Nov 10, 2025Updated 5 months ago
- Create SPDX documents automatically with CMake build info☆32May 2, 2021Updated 5 years ago
- Repository for on-going work as part of the SBOM for AI Tiger Team effort.☆43Jul 28, 2025Updated 9 months ago
- sbomasm: The Complete SBOM Management Toolkit☆113Apr 20, 2026Updated last week
- Automating Compliance Tooling Project☆24Jan 28, 2022Updated 4 years ago
- A TypeScript implementation of CVSS 2.0, 3.0, 3.1 and 4.0, alongside a web application for calculating scores for multiple CVSS vectors s…☆19Mar 30, 2026Updated last month
- 1-Click AI Models by DigitalOcean Gradient • AdDeploy popular AI models on DigitalOcean Gradient GPU virtual machines with just a single click. Zero configuration with optimized deployments.
- Automatically assess and score software repositories for supply chain risk.☆124Updated this week
- sbomqs: The Comprehensive SBOM Quality & Compliance Tool☆289Updated this week
- Enrich SBOMs with data from third party services☆224Apr 9, 2026Updated 3 weeks ago
- Examples and proof-of-concept for Software Bill of Materials (SBOM) code & data☆67Apr 8, 2024Updated 2 years ago
- Format agnostic SBOM tooling☆137Nov 20, 2025Updated 5 months ago
- SBOM Search - Context aware search in SBOM repositories☆32Nov 24, 2025Updated 5 months ago
- Utility that provides an API platform for validating, querying and managing BOM data☆136Jan 2, 2026Updated 4 months ago
- SPDX Command Line Tools using the Spdx-Java-Library☆90Updated this week
- Library to ingest and generate SBOMs☆41Apr 17, 2026Updated 2 weeks ago
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- ☆24Nov 8, 2024Updated last year
- This is the OpenChain Telco Work Group☆20Apr 2, 2026Updated last month
- REUSE recommendations, tutorials, FAQ and specification☆18May 27, 2024Updated last year
- ☆62Updated this week
- CaPyCLI - Python scripts for software license compliance automation with SW360☆22Apr 16, 2026Updated 2 weeks ago
- Examples of SPDX files for software combinations☆145Apr 23, 2026Updated last week
- Generate a score for your sbom to understand if it will actually be useful.☆242Aug 13, 2024Updated last year
- GitHub app for SBOM creation using cdxgen and upload to Dependency-Track☆23Updated this week
- Example CLI project to demo API architecture and protobom library☆25Apr 20, 2026Updated last week
- Serverless GPU API endpoints on Runpod - Get Bonus Credits • AdSkip the infrastructure headaches. Auto-scaling, pay-as-you-go, no-ops approach lets you focus on innovating your application.
- Provides content useful for IriusRisk threat modelling, including templates, API scripts, libraries and more.☆16Apr 20, 2026Updated last week
- The System Package Data Exchange (SPDX) specification in Markdown and HTML formats.☆362Updated this week
- A universal SBOM representation in protocol buffers☆322Apr 26, 2026Updated last week
- OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reductio…☆502Apr 25, 2026Updated last week
- A standard API specification for exchanging supply chain artifacts and intelligence☆106Mar 25, 2026Updated last month
- SPDX Merge tool☆51Apr 13, 2026Updated 2 weeks ago
- OpenVEX Specification☆173Jan 16, 2026Updated 3 months ago