CycloneDX / specification

OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and VEX
https://cyclonedx.org/
Apache License 2.0
337 stars 57 forks source link

Improve documentation for BOM-Link externalReferences.type #446

Open prabhu opened 2 months ago

prabhu commented 2 months ago

Currently, externalReferences supports both URL and BOM-Link. There are some types that are better expressed with BOM-Link and therefore must be preferred over a URL.

Below are some types:

To start with we can improve the documentation and create use-case examples to better illustrate the use of CycloneDX for these types.