The Linux Foundation is making available a set of free tools for building software bills of material (SBOMs) based on the software data package exchange (SPDX) file format it curates. Backed by more than 20 organizations, SPDX is an effort to standardize the way metadata describing the contents of a software package is described. The […]

