Best Sbom

Updated Daily
inventory_2 11 items
trending_up Scored across 12 criteria

Rankings are calculated based on verified user reviews, recency of updates, and community voting weighted by user reputation score.

emoji_events View Best Sbom Rankings
Filter by Tags
0.0 10.0
Best 1 WhiteSource Bolt
WhiteSource Bolt

WhiteSource Bolt is a free open source compliance tool that scans projects for open source components, identifies license risks, and highlights known vulnerabilities. It generates SBOMs and provides r...

8.9 매우 좋음
Visit
2 Black Duck Hub (Synopsys)
Black Duck Hub (Synopsys)

Black Duck Hub, now part of Synopsys, is a powerful, enterprise-grade open source management platform. It provides comprehensive license compliance, vulnerability management, and SBOM generation capab...

8.7 매우 좋음
Visit
3 Snyk Open Source
Snyk Open Source

Snyk Open Source is a developer-first platform focused on identifying and fixing open source vulnerabilities. It integrates directly into IDEs and CI/CD pipelines, providing real-time feedback to deve...

8.6 매우 좋음
Visit
4 ClearlyDefined
ClearlyDefined

ClearlyDefined focuses on providing a centralized Software Bill of Materials (SBOM) and supply chain security data. It aggregates vulnerability and license information from multiple sources, providing...

8.3 매우 좋음
Visit
5 Dependency-Track
Dependency-Track

Dependency-Track is an open-source, Java-based application for tracking software dependencies and identifying vulnerabilities. It generates SBOMs and provides a centralized view of project dependencie...

8.2 매우 좋음
Visit
6 JFrog Xray
JFrog Xray

JFrog Xray is a universal repository manager that scans artifacts for vulnerabilities and license compliance issues. It integrates with JFrog Artifactory and provides a comprehensive view of software...

7.7 좋음
Visit
7 ScoutSuite
ScoutSuite

ScoutSuite is an open-source tool for generating Software Bill of Materials (SBOMs) and analyzing project dependencies. It provides a dependency graph visualization and identifies license types. While...

7.4 좋음
Visit
8 Firmament
Firmament

Firmament is an open-source platform for managing software supply chain security and generating SBOMs. It leverages a graph database to represent complex dependencies and relationships. It's designed...

7.3 좋음
Visit
9 grype
grype

grype is a command-line tool for vulnerability scanning of container images and filesystems. It identifies vulnerabilities in open source dependencies and provides detailed reports. Its particularly u...

7.1 좋음
Visit
10 Reposhack
Reposhack

Reposhack is a self-hosted tool that integrates with GitHub to scan repositories for vulnerabilities and license compliance issues. It generates SBOMs and provides detailed reports. It's a good option...

7.0 좋음
Visit
11 LibreLabs
LibreLabs

LibreLabs is an open-source tool designed to generate SBOMs and identify vulnerabilities in open-source dependencies. It integrates with GitHub and provides a user-friendly interface for managing open...

6.8 보통
Visit
You've reached the end — 11 items

Save to your list

Create your first list and start tracking the tools that matter to you.

Track favorites
Get updates
Compare scores

Already have an account? Sign in

Compare Items

See how they stack up against each other

Comparing
VS
Select 1 more item to compare