Skip to content
#

sbom-quality

Here are 9 public repositories matching this topic...

sbom-tools

Semantic SBOM/CBOM/AI-BOM diff, quality scoring, and compliance validation for CycloneDX/SPDX — component, license, and vulnerability change analysis, cryptographic inventory grading, PQC readiness (CNSA 2.0, NIST IR 8547), and regulatory gates for NTIA, FDA, EU CRA, BSI TR-03183, EUCC, SSDF, EO 14028, and the EU AI Act.

  • Updated Jul 24, 2026
  • Rust

SBOMinify is a GitHub Action to capture and list installed packages and their versions in a Docker image, generating Software Bill of Materials (SBOM) files. This action leverages some special technics to scan Docker images and output SBOM files in both table and JSON formats.

  • Updated Jan 19, 2025
  • Shell

Improve this page

Add a description, image, and links to the sbom-quality topic page so that developers can more easily learn about it.

Curate this topic

Add this topic to your repo

To associate your repository with the sbom-quality topic, visit your repo's landing page and select "manage topics."

Learn more