Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
-
Updated
Feb 28, 2025 - Java
Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.
Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects
Creates CycloneDX Software Bill of Materials (SBOM) from Gradle projects
CycloneDX SBOM Model and Utils for Creating and Validating BOMs
Lockheed Martin developed utility to generate CycloneDX SBOMs for Linux distributions
We have moved and *archived* this repository. Pls. continue at the new place at /~https://github.com/eclipse/sw360 ... A software component catalogue application - designed to work with FOSSology.
Lockheed Martin developed utility to compare two CycloneDX SBOMs
Lockheed Martin developed utility to combine multiple CycloneDX SBOMs
Lockheed Martin developed common SBOM library
A maven plugin to suggest BOM files based on existing project dependencies.
Creates CycloneDX Software Bill-of-Materials (SBoM) from NuGet projects
Lockheed Martin developed common library to combine multiple SBOMs
Add a description, image, and links to the bill-of-materials topic page so that developers can more easily learn about it.
To associate your repository with the bill-of-materials topic, visit your repo's landing page and select "manage topics."