SBOM Reports

SBOM Insights enables you to generate various sample script-based reports. The following are the reports currently available with SBOM Insights.

SPDX Report (SPDX v2.2)—The SBOM report in SPDX format (.spdx) for the SBOM parts in a given bucket
SBOM Report (CycloneDX v1.4)—The SBOM in CycloneDX format (.xml) for the SBOM parts in a given bucket
SBOM Report (HTML/Excel)—A human-readable SBOM report for the SBOM parts in a given bucket
Third-Party Notices Report—A third-party notices report (with attributions and license content) for the SBOM parts in a given bucket
Vulnerability Report—A security report listing information about the security vulnerabilities associated with each SBOM part in a given bucket

SBOM Insights provides an SBOM Insight Reports package that you download and install. You can then configure the reports and run them from a command line.