SBOM Generator and CVE Matcher
Generates Software Bill of Materials using Syft for container images and matches components against the NVD CVE database via OSV.dev API. Outputs CycloneDX and SPDX formats for supply chain compliance.
SBOM Generator and CVE Matcher
Generates Software Bill of Materials using Syft for container images and matches components against the NVD CVE database via OSV.dev API. Outputs CycloneDX and SPDX formats for supply chain compliance.
Installation
Method 1, Agent Skill Exchange
- Install from the marketplace listing: https://agentskillexchange.com/skills/sbom-generator-cve-matcher/
Method 2, Git clone
git clone https://github.com/agentskillexchange/skills.git && cd skills/skills/sbom-generator-cve-matcher
Method 3, Download ZIP
- Download the repository ZIP and extract
skills/sbom-generator-cve-matcher.
Method 4, Manual copy
- Copy this skill folder into your local skills directory, then reload your agent tooling.
Method 5, Fork and sync
- Fork the repository if you want to maintain local edits while syncing upstream changes.