A lightweight Go library for validating Software Bill of Materials (SBOM) against industry-standard specifications
-
Updated
Dec 23, 2025 - Go
A lightweight Go library for validating Software Bill of Materials (SBOM) against industry-standard specifications
This repo accumulate underlying data and analysis results for assessing the current landscape of open-source and proprietary tools related to Software Bill of Materials (SBOM). We additionally compiled our findings into a comprehensive spreadsheet detailing 86 tools and their use cases.
One POST, instant CVE impact for your SBOM. Give us a lightweight component list (npm / PyPI today), and get back the exact vulnerabilities and the minimal fixed versions you need to patch. Built for CI pipelines, PR checks, and SRE/AppSec dashboards.
STATUS - PyPI Download Metrics for SEMCL.ONE tools
Add a description, image, and links to the sbom-tools topic page so that developers can more easily learn about it.
To associate your repository with the sbom-tools topic, visit your repo's landing page and select "manage topics."