Best Sbom

Updated Daily
inventory_2 11 items
trending_up Scored across 12 criteria

Rankings are calculated based on verified user reviews, recency of updates, and community voting weighted by user reputation score.

emoji_events View Best Sbom Rankings
Filter by Tags
0.0 10.0
Best 1 WhiteSource Bolt
WhiteSource Bolt

WhiteSource Bolt is a free open source compliance tool that scans projects for open source components, identifies license risks, and highlights known vulnerabilities. It generates SBOMs and provides r...

8.9 Muito Bom
Visit
2 Black Duck Hub (Synopsys)
Black Duck Hub (Synopsys)

Black Duck Hub, now part of Synopsys, is a powerful, enterprise-grade open source management platform. It provides comprehensive license compliance, vulnerability management, and SBOM generation capab...

8.7 Muito Bom
Visit
3 Snyk Open Source
Snyk Open Source

Snyk Open Source is a developer-first platform focused on identifying and fixing open source vulnerabilities. It integrates directly into IDEs and CI/CD pipelines, providing real-time feedback to deve...

8.6 Muito Bom
Visit
4 ClearlyDefined
ClearlyDefined

ClearlyDefined focuses on providing a centralized Software Bill of Materials (SBOM) and supply chain security data. It aggregates vulnerability and license information from multiple sources, providing...

8.3 Muito Bom
Visit
5 Dependency-Track
Dependency-Track

Dependency-Track is an open-source, Java-based application for tracking software dependencies and identifying vulnerabilities. It generates SBOMs and provides a centralized view of project dependencie...

8.2 Muito Bom
Visit
6 JFrog Xray
JFrog Xray

JFrog Xray is a universal repository manager that scans artifacts for vulnerabilities and license compliance issues. It integrates with JFrog Artifactory and provides a comprehensive view of software...

7.7 Bom
Visit
7 ScoutSuite
ScoutSuite

ScoutSuite is an open-source tool for generating Software Bill of Materials (SBOMs) and analyzing project dependencies. It provides a dependency graph visualization and identifies license types. While...

7.4 Bom
Visit
8 Firmament
Firmament

Firmament is an open-source platform for managing software supply chain security and generating SBOMs. It leverages a graph database to represent complex dependencies and relationships. It's designed...

7.3 Bom
Visit
9 grype
grype

grype is a command-line tool for vulnerability scanning of container images and filesystems. It identifies vulnerabilities in open source dependencies and provides detailed reports. Its particularly u...

7.1 Bom
Visit
10 Reposhack
Reposhack

Reposhack is a self-hosted tool that integrates with GitHub to scan repositories for vulnerabilities and license compliance issues. It generates SBOMs and provides detailed reports. It's a good option...

7.0 Bom
Visit
11 LibreLabs
LibreLabs

LibreLabs is an open-source tool designed to generate SBOMs and identify vulnerabilities in open-source dependencies. It integrates with GitHub and provides a user-friendly interface for managing open...

6.8 Razoável
Visit
You've reached the end — 11 items

Save to your list

Create your first list and start tracking the tools that matter to you.

Track favorites
Get updates
Compare scores

Already have an account? Sign in

Compare Items

See how they stack up against each other

Comparing
VS
Select 1 more item to compare