-
Notifications
You must be signed in to change notification settings - Fork 158
Open
Description
I've noticed that this project currently does not generate a Software Bill of Materials (SBOM). An SBOM is a critical document for tracking software dependencies, ensuring compliance, and enhancing security. It is increasingly important for understanding what components are included in a software release, particularly as supply chain security becomes more vital.
There are several tools for generating SBOM for different types such as:
- Syft,
- sbom-tool,
- and many more tools are here
Metadata
Metadata
Assignees
Labels
No labels