spack / spack-sbom

Generate a software bill of materials (SBOM) for a spack package
2 stars 2 forks source link

SBOM Verification Level #2

Open whart222 opened 3 months ago

whart222 commented 3 months ago

The OWASP Software Component Verification Standard for Software Bill of Materials defines criteria for the verification of SBOMs. What verification level does spack-sbom support?

I think documenting verification requirements like these would help users assess the maturity of spack-sbom.