Get started

Web Services

The client application is provided by a web application framework capable of serving multiple tenants. It includes a robust web-based user interface, databases, and a RestAPI specifically crafted for smooth integration with CI/CD automation processes.

Information Services

The Information Services play a vital role in delivering essential data to web service users regarding vulnerabilities, exploits, patches, software versions, licensing, and more. The Information Services is also a proxy, acting as an intermediary between clients and the Internet, anonymizing requests and protecting privacy.

Features

Vulnerability Detection

Identifying known vulnerabilities in third-party components through integration with external vulnerability services.

Health Monitoring

Labeling components with their version status and additional data that may suggest a higher level of risk.

Vulnerability Management

Analyzing, prioritizing, and creating remediation decisions for vulnerabilities, SBOM projects, and more.

Traceability Management

Traceability with a complete history of SBOMs and diff-tools to compare between any version.

Audit Workflow

Tools for analytics and decisions. Recording changes to create audit trails.

Licensing Management

FOSS licensing management and monitoring with semi-automated license approval to support organizational compliance.

Artifact tool

Tool with assistance to manually create artifacts.

SBOM tool

Tool to manually create SBOMs.

Dictionary assistance

Real-time dictionary assistance for accurate parameter naming.

Notifications

Automated notifications in the web UI and email for selected SBOMs.

Continuous Monitoring

Continuous monitoring of all SBOMs regarding vulnerabilities, exploits, updates, and more.

Teams

Create teams to protect and share data with selected groups of users.

SBOM Formats

SBOM Central currently analyzes and consumes SBOMs with the CycloneDX (version 1.3-1.6, Json) format.

WebApp

Multi-tenant web app with an easy-to-use user interface packed with powerful features.

RestAPI

Documented API to integrate with software automation pipelines.

Supported data sources: