Software Bill of Materials (SBOM)
A formal, machine-readable inventory that lists all components and dependencies included in a software application, providing transparency into the software supply chain.
Related Terms
CycloneDX
CycloneDX is a lightweight SBOM standard designed for application security contexts and supply chain component analysis.
Dependency
External software packages or components that a project uses or relies on to function properly.
License Compliance
Ensuring that software usage, distribution, and modification adhere to the legal requirements and obligations specified in software licenses and agreements.
Vulnerability Management
The cyclical process of identifying, evaluating, treating, and reporting security vulnerabilities across an organization's software, systems, and networks.