Skip to content

[contrib] export a SBOM of dependencies

What :

  • Export a Software Bill Of Materials (SBOM) containing all dependencies used by Jami Daemon

Why :

  • A SBOM is required to perform CVE analysis and improve security posture of Jami

Who :

How :

  • Add product identification using CPE or PURL in contrib sources
  • Add a Make rule to build a SBOM automatically