GUAC aggregates software security metadata into a high fidelity graph database.
-
Updated
Dec 3, 2025 - Go
GUAC aggregates software security metadata into a high fidelity graph database.
The System Package Data Exchange (SPDX) specification in Markdown and HTML formats.
The model for the information captured in SPDX version 3 standard.
A suite of utilities to help with software supply chain challenges on nix targets
Vulnerability management tool that provides Yocto SBOM generation and CVE Analysis of target images.
Utility that provides an API platform for validating, querying and managing BOM data
Software Quality Management Tool
A library and CLI to work with CSAF and SBOM data
Yocto layer to integrate VulnScout in projects (SBOM Vulnerability Scanning & Assessment tool)
Vulnerability management tool that provides OpenWRT SBOM generation and CVE Analysis of target images.
Vulnerability management tool that provides Buildroot SBOM generation and CVE Analysis of target images.
Detect Licenses, dependencies by scanning your project/repositories to discover the Open Source and Third party packages used in your code.
Heimdall is a C++ toolchain for generating Software Bills of Materials (SBOMs) from compiled binaries, extracting debug information, symbols, and dependencies with plugin support for the LLVM and gold linker. Supports gcc and clang. A CMake module is provided for easy build integration and an SPDX/CycloneDX SBOM validator for BOM validation
Command line tool and python package for interacting with Timesys Vigiles APIs
Python demo of generating an SPDX SBOM of RPM Packages
OSPAC - Open Source Policy as Code
AI BOM example. A simple sentiment analysis application, published solely as an artifact for the purpose of demonstrating a software bill of materials. Not recommended for any serious text classification task.
Add a description, image, and links to the spdx-sbom topic page so that developers can more easily learn about it.
To associate your repository with the spdx-sbom topic, visit your repo's landing page and select "manage topics."