Software Bill Of Materials (SBOM)

BoostSecurity enables collecting the nested inventory of all open-source and third-party components in your project codebase.

Collecting the projects' SBOMs is as simple as configuring the BoostSecurity SBOM scanning module to the projects' workflows, and the inventories are generated at every commit on the projects' default branches.

In addition to reporting the inventories of components, BoostSecurity also reports on the known security vulnerabilities for these components.

These guides would teach you specific instances on SBOM:

  1. How to Generate SBOM
  2. Empty SBOM
  3. Configuring Forbidden Licenses