The CycloneDX Tool Center is the largest publicly available collection of SBOM (Software Bill of Materials) and xBOM (e.g., SaaSBOM, CBOM, HBOM) products, projects, and services. It serves as a centralized resource for anyone looking to explore, evaluate, or integrate BOM-related capabilities into their toolchains and workflows. The Tool Center is an integral part of the CycloneDX website.
All data within this repository is provided under the Apache License, Version 2.0. You are free to use, modify, and redistribute the data in accordance with the terms of this license.
Contributions are welcome! If you know of a tool, product, or service related to SBOM or xBOM (SaaSBOM, CBOM, HBOM) that isn’t listed, please feel free to open a pull request or file an issue. When contributing, ensure that:
- The tool is relevant to SBOM/xBOM generation, analysis, or consumption.
- Any provided metadata or descriptions are accurate and up-to-date.
- Licensing and attribution requirements for tools are respected.
If you have questions, suggestions, or feedback about the CycloneDX Tool Center, we encourage you to:
- Join the CycloneDX Slack for real-time discussions.
- Visit the CycloneDX website for documentation, news, and updates.
- Open an issue in this repository for any corrections or clarifications.
By leveraging the Tool Center’s data, users and organizations can more easily discover solutions, accelerate their SBOM and xBOM adoption, and enhance the security and transparency of their software supply chains.