Skip to content

Latest commit

 

History

History
executable file
·
29 lines (21 loc) · 1.11 KB

index.md

File metadata and controls

executable file
·
29 lines (21 loc) · 1.11 KB
layout keywords comments banner title window_title description micro_nav
home
application security, software security, software bill of materials, SBOM, BOM, open source, supply chain, specification, spdx, license, package url, purl, cpe, swid
false
true
CycloneDX
CycloneDX Software Bill of Materials (SBOM) Standard
CycloneDX is a lightweight software bill of materials (SBOM) standard designed for use in application security contexts and supply chain component analysis.
false

Introduction

Modern software is assembled using third-party and open source components. They are glued together in complex and unique ways and integrated with original code to achieve the desired functionality. An accurate inventory of all components enables organizations to identify risk, allows for greater transparency, and enables rapid impact analysis.

CycloneDX was created for this purpose.

Strategic direction and maintenance of the specification is managed by the CycloneDX Core working group, with origins in the OWASP community.