Below you will find pages that utilize the taxonomy term “Sbomify”
April 24, 2026
sbomify
Version updated for https://github.com/sbomify/sbomify-action to version v26.2.0.
This action is used across all versions by 26 repositories. Action Type This is a Docker action.
Go to the GitHub Marketplace to find the latest changes.
Action Summary The sbomify-action GitHub Action automates the generation, enrichment, and management of Software Bill of Materials (SBOMs) within CI/CD pipelines. It supports multiple SBOM formats (CycloneDX, SPDX) and sources (e.g., lockfiles, Docker images), while also enhancing SBOMs with metadata such as licenses, authors, and dependencies. By enabling cryptographic signing, attestation, and integration with tools like sbomify, the action helps ensure a secure and verifiable software supply chain.