* [CycloneDX Generator (cdxgen) v12.5.0](https://github.com/cdxgen/cdxgen) – CLI, library, REPL, and server generating CycloneDX Bill of Materials (BOM) in JSON for projects and container images. * [Chainloop v1.99.0](https://github.com/chainloop-dev/chainloop) – Evidence store and policy engine for Software Supply Chain attestations, SBOMs, VEX, SARIF, and QA reports. * [Grant v0.6.6](https://github.com/anchore/grant) – CLI and Go library for scanning and enforcing software licenses in container images, SBOMs, and filesystems. * [sbom-operator 0.42.5](https://github.com/ckotzbauer/sbom-operator) – Catalog all Kubernetes cluster container images and generate SBOMs with Syft, storing results to Git, Dependency-Track, OCI registries, or ConfigMaps. * [Konflux-CI v0.1.13-rc.1](https://github.com/konflux-ci/konflux-ci) – CI/CD platform for building, testing, and releasing applications on Kubernetes clusters.