Skip to content

Evaluate & Adhere (or have good reasons why not) to NTIA minimal elements #34

@justinabrahms

Description

@justinabrahms

https://www.ntia.gov/sites/default/files/publications/sbom_minimum_elements_report_0.pdf

minimum elements

Data Field Description
Supplier Name The name of an entity that creates, defines, and identifies components.
Component Name Designation assigned to a unit of software defined by the original supplier.
Version of the Component Identifier used by the supplier to specify a change in software from a previously identified version.
Other Unique Identifiers Other identifiers that are used to identify a component, orserve as a look-up key for relevant databases.
Dependency Relationship Characterizing the relationship that an upstream componentX is included in software Y.
Author of SBOM Data The name of the entity that creates the SBOM data for this component.
Timestamp Record of the date and time of the SBOM data assembly

Metadata

Metadata

Assignees

No one assigned

    Labels

    help wantedExtra attention is needed

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions