Sbom Generate · 686f6c61/alfred-dev

Generate a Software Bill of Materials (SBOM) for a project

Inventories direct and transitive dependencies from lock files across ecosystems like npm, Python, Rust, Go, and Java, then outputs a CycloneDX or SPDX report with package versions, licenses, and hashes. Useful for supply-chain audits or CRA compliance.

Good for

  • List direct and transitive dependencies with licenses
  • Generate a CycloneDX or SPDX report for a release
  • Check a dependency inventory for unidentified licenses
Source repository
686f6c61/alfred-dev
Category
Coding

Open-source skills are maintained by their authors and listed as published, with attribution. Results depend on how well the skill fits your task and material.

A good place to start

Generate a CycloneDX SBOM for this project, including all direct and transitive dependencies with licenses.

Make your next great thing.

Bring a question, a file, or an idea that’s not quite there yet.