SBOM data for Components: SPDX, CycloneDX, ....

Hi,

for regulatory compliance and managing our software supply chain, we are looking for sbom data of your components/libraries. Can you provide SPDX or CycloneDX data or what are your plans regarding this topic?

Some side notes:

Thanks!

We have been working on a tool that can generate the SBOM, but I want to ask which products you need an SBOM for, we can generate them and then see if this is sufficient for your needs

Hi Pieter,

thanks for the feedback - basically we would need the TMS FNC UI sbom(s) - but I would also be interested in how you generate/automate sbom creation in general (we are currently playing with ORT)…

Thanks!