Skip to main content

A curated list of SBOM (Software Bill Of Materials) related tools, frameworks, blogs, podcasts, and articles

582
GitHub Stars
93
Curated Resources
9
Categories
21 hours ago
Last Refreshed
Official projectsCycloneDXSPDXCommunity RepositoriesArticles and BlogsVideosSlidesPodcastsBenchmarks

Use this list with your AI agent

Add the Context Awesome MCP server to Claude, Cursor, or any MCP client, then ask:

"Show me security tools resources from awesome-sbom"

Installation instructions →

What's inside

Community Repositories

  • AIsbomSecurity Tools

    CLI that scans AI models for malware and license risks and generates CycloneDX SBOMs.

  • bomberSecurity Tools

    bomber is an application that scans SBoMs for security vulnerabilities.

  • NTIA Conformance CheckerSecurity Tools

    Check SPDX SBOM for NTIA minimum elements

  • parlaySecurity Tools

    Enrich SBOMs with data from third party services

  • SBOM-Operator for Kubernetes

  • sbom-scorecardSecurity Tools

    Generate a score for your sbom to understand if it will actually be useful.

Official projects

Benchmarks

Showing a sample of 93 resources. View the full list on GitHub →