ossf / wg-security-tooling

OpenSSF Security Tooling Working Group
https://openssf.org
Apache License 2.0
299 stars 52 forks source link

SBOM Manipulation Tooling - 2023 Secure Open Source Software Summit Item #61

Open idunbarh opened 1 year ago

idunbarh commented 1 year ago

During the 2023 OpenSSF Secure Open Source Software Summit, an action item was create to help open source and standardize simple sbom manipulate tooling. A time table was also proposed.

To support the requirements phase, I started a google doc.

idunbarh commented 10 months ago

A new organization called bomctl for existing capability to be consolidated into a single project.

nishakm commented 10 months ago

I am interested in moving some projects to a known org: https://github.com/opensbom-generator/ particularly https://github.com/opensbom-generator/sbom-composer with maybe a rewrite.

idunbarh commented 9 months ago

For those that would like to participate in a working meeting to work the requirements and consolidation, this doodle was created to capture a time to meet.