spdx / outreach

content for outreach activities
5 stars 10 forks source link

[Tool Request]: Manifest #65

Closed bardenstein closed 4 months ago

bardenstein commented 6 months ago

Tool or Product name

Manifest

Open Source or Proprietary

proprietary

Company or Organization name

Manifest

Organization or Company Logo Usage

Public Contact Email or URL

marc@manifestcyber.com

Product or tool website

www.manifestcyber.com

Description

Manifest's SBOM-powered security platform automates the entirety of the SBOM lifecycle, from generation to management to secure sharing. Our platform helps product security teams ship more secure code by finding and remediating vulnerabilities, license issues, and open source risk; help vulnerability management teams prioritize, triage, and respond faster to supply chain vulnerabilities like log4j/log4shell; GRC teams to demonstrate compliance with requirements such as EO 14028, FDA's pre-market requirements, EU's Cyber Resilience Act and NIS2, NIST 800-218, and others; and helps procurement/C-SCRM/TPRM teams vet software vendors more accurately.

Manifest can generate and ingest both SPDX and CyclondeDX, and can get organizations up and running with SBOMs in literally minutes.

Manifest is also pioneering the AI Bill of Materials (AIBOM), as a means to help security teams build AI Risk Management programs to secure open source and internal model/dataset usage.

SBOM tool category

SPDX Versions supported

SPDX verification

We generate validated SPDX SBOMs and validate all incoming SBOMs to make sure they are valid SPDX (or CycloneDX) using official SPDX validation tools.

How to procure

Email us at info@manifestcyber.com for a free pilot!

Installation instructions

Manifest is a SaaS platform, so installation is minimal once you reach out. We can also deploy into more complicated environments as needed.

Link to quick start guide

No response

podence commented 4 months ago

duplicate