layout | keywords | comments | banner | title | window_title | description | micro_nav |
---|---|---|---|---|---|---|---|
home |
application security, software security, software bill of materials, SBOM, BOM, HBOM, VEX, VDR, open source, supply chain, specification, spdx, license, package url, purl, cpe, swid |
false |
true |
OWASP CycloneDX |
OWASP CycloneDX Software Bill of Materials (SBOM) Standard |
OWASP CycloneDX is a lightweight software bill of materials (SBOM) standard designed for use in application security contexts and supply chain component analysis. |
false |
OWASP CycloneDX is a lightweight Software Bill of Materials (SBOM) standard designed for use in application security contexts and supply chain component analysis.
Strategic direction and maintenance of the specification is managed by the CycloneDX Core working group, with origins in the OWASP community.