SBOM

Skill packages tagged with “SBOM”

SBOM Lifecycle Drafter

Draft and maintain the SBOM Management Procedure aligned with NIST CSF 2.0 ID.AM. Covers ingestion, validation, and monitoring of SBOMs; Vulnerability Disclosure when NVD flags a component; and developer Attestation of Security. Validates procedure and SBOM files against CycloneDX/SPDX.

    Learn More
    SBOM Risk Scorer

    CISA CPG 6.1 Supply Chain SBOM Review: analyze CycloneDX or SPDX SBOMs for Vulnerability Debt and gatekeeping evidence. Summarizes vulnerability debt and flags EOL and critical-CVE components for Accept/Reject decisions.

      Learn More
      SBOM Vulnerability Mapper

      Generate and validate a Software Bill of Materials (SBOM) and draft CRA-compliant technical documentation for connected products in the EU market. Checks software components against the NIST NVD for known critical vulnerabilities. Covers product classification, Annex I essential cybersecurity requirements, vulnerability handling, conformity assessment, and ENISA reporting readiness.

        Learn More

        Ready to let your expertise drive the workflow?

        Stop wrestling with rigid templates and complex tooling. Write your process in markdown, let the agent handle the rest.

        Get Started