CycloneDX / specification

OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and VEX
https://cyclonedx.org/
Apache License 2.0
338 stars 57 forks source link

Add support for redaction #409

Open stevespringett opened 3 months ago

stevespringett commented 3 months ago

It is desirable to specify that a component, service, assembly, or dependency has been redacted. This is a use case currently being discussed at CISA.