sbom-tool VS cyclonedx-gomod

Compare sbom-tool vs cyclonedx-gomod and see what are their differences.

sbom-tool

The SBOM tool is a highly scalable and enterprise ready tool to create SPDX 2.2 compatible SBOMs for any variety of artifacts. (by microsoft)
Our great sponsors
  • InfluxDB - Power Real-Time Data Analytics at Scale
  • WorkOS - The modern identity platform for B2B SaaS
  • SaaSHub - Software Alternatives and Reviews
sbom-tool cyclonedx-gomod
8 4
1,438 124
5.0% 7.3%
8.9 8.7
about 13 hours ago 3 days ago
C# Go
MIT License Apache License 2.0
The number of mentions indicates the total number of mentions that we've tracked plus the number of user suggested alternatives.
Stars - the number of stars that a project has on GitHub. Growth - month over month growth in stars.
Activity is a relative number indicating how actively a project is being developed. Recent commits have higher weight than older ones.
For example, an activity of 9.0 indicates that a project is amongst the top 10% of the most actively developed projects that we are tracking.

sbom-tool

Posts with mentions or reviews of sbom-tool. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-04-25.

cyclonedx-gomod

Posts with mentions or reviews of cyclonedx-gomod. We have used some of these posts to build our list of alternatives and similar projects. The last one was on 2023-05-22.

What are some alternatives?

When comparing sbom-tool and cyclonedx-gomod you can also consider the following projects:

cyclonedx-gradle-plugin - Creates CycloneDX Software Bill of Materials (SBOM) from Gradle projects

ort - A suite of tools to automate software compliance checks.

awesome-sbom - A curated list of SBOM (Software Bill Of Materials) related tools, frameworks, blogs, podcasts, and articles

cyclonedx-bom-repo-server - A BOM repository server for distributing CycloneDX BOMs

go-mod-outdated - Find outdated dependencies of your Go projects. go-mod-outdated provides a table view of the go list -u -m -json all command which lists all dependencies of a Go project and their available minor and patch updates. It also provides a way to filter indirect dependencies and dependencies without updates.

cyclonedx-maven-plugin - Creates CycloneDX Software Bill of Materials (SBOM) from Maven projects

ostree - Operating system and container binary deployment and upgrades

osv-scanner - Vulnerability scanner written in Go which uses the data provided by https://osv.dev

sig-security - 🔐CNCF Security Technical Advisory Group -- secure access, policy control, privacy, auditing, explainability and more!