Below you will find pages that utilize the taxonomy term “otto-de”
January 23, 2026
SBOM Auditor Action
Version updated for https://github.com/otto-de/sbom_auditor_action to version v0.6.0.
This action is used across all versions by ? repositories. Go to the GitHub Marketplace to find the latest changes.
Action Summary The SBOM Auditor GitHub Action automates the auditing of Software Bill of Materials (SBOM) for license compliance. It enriches SBOMs with detailed license information, audits dependencies against a defined policy, and generates comprehensive license audit reports, optionally including AI-assisted summaries. This action streamlines license compliance checks, helping developers identify and address potential violations efficiently.
January 13, 2026
SBOM Auditor Action
Version updated for https://github.com/otto-de/sbom_auditor_action to version v0.5.5.
This action is used across all versions by ? repositories. Go to the GitHub Marketplace to find the latest changes.
Action Summary The SBOM Auditor GitHub Action automates the auditing of a repository’s Software Bill of Materials (SBOM) for license compliance. It enriches SBOM data with detailed license information, checks licenses against a defined policy, and generates a comprehensive audit report, optionally including AI-assisted summaries.
December 20, 2025
SBOM Auditor Action
Version updated for https://github.com/otto-de/sbom_auditor_action to version v0.4.3.
This action is used across all versions by ? repositories. Go to the GitHub Marketplace to find the latest changes.
Release notes 🐛 Bug Fixes Custom Policy Merge Fix (Issue #9) Custom policy_path now properly extends the default policy instead of replacing it. Previously, using a custom policy caused all default allowlisted licenses (Apache-2.0, MIT, etc.) to be flagged as “needs-review”.
✨ New Features Data-Driven License Aliases License aliases are now defined in policy.