Evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more
-
Updated
Oct 24, 2025 - Go
Evidence store and policy engine for your Software Supply Chain attestations, SBOMs, VEX, SARIF, QA reports, and more
Format agnostic SBOM tooling
SBOM Explorer - Discover and pull public SBOMs
CLI to interact with ReARM SBOM / xBOM and Release Manager
Add a description, image, and links to the sbom-distribution topic page so that developers can more easily learn about it.
To associate your repository with the sbom-distribution topic, visit your repo's landing page and select "manage topics."