SPDX

An open ISO standard for SBOMs

Technologies

c
python
java
github
rdf
json
golang
xml
node.js
go

Topics

compliance
licensing
opensource
open source
security
standards
data
vulnerabilities
https://spdx.dev
Chat
Email
Mailing List / Forum
Blog

Projects

Contributor

Aleksandr Lisianoi

Online Validation Tools

Software Package Data Exchange (SPDX) is “a set of standards for communicating the components, licenses, and copyrights associated with software”....

View project detailsView code

Contributor

Rohit Lodha

Online SPDX Tool

Building an easy all-in-one portal to upload and parse SPDX documents for validation, comparison and conversion and search SPDX license list by...

View project detailsView code

Contributor

Nuvadga Christian Tete

License Coverage Grader

There have been several talks about the need for a package level License Coverage Grade. This project will come up with an initial set of heuristics...

View project detailsView code

Contributor

Anna Buhman

GitHub Integration Proposal

Design, develop, and implement an application that, when provided with a GitHub repository's URL, generates SPDX (https://spdx.org/) documents based...

View project detailsView code