Skip to content
Back to the index

SBOM Tool

visualstudio.comApplication security & vulnerability scanning

No liveness check has reached it yet; it is registered on the VS Code Marketplace and has been in the index since 9 Oct 2026. How this is checked

A Visual Studio Code extension that generates software bills of materials for the current workspace and runs dependency vulnerability checks. It supports formats and scanners including CycloneDX, SPDX, npm audit, and Trivy for developer security workflows.

Inferred · not functionally tested

FreeWebWindowsmacOSLinux
Visit visualstudio.com

Overview

6 features

Purpose: Helps developers generate software bills of materials and identify vulnerabilities in the current code workspace.

Inferred · not functionally tested

Audience: software developers and security engineers

Inferred · not functionally tested

Functions: data_extraction, monitoring

Inferred · not functionally tested

Interfaces: API: unknown · MCP: unknown · CLI: unknown · Self-hosting: unknown

Recorded constraints: pricing: free · license: Proprietary · platforms: WEB · deployment: browser, windows, macos, linux

Constraint provenance is unknown; confirm requirements with the publisher.

Record sources: unknown.

In the Application security & vulnerability scanning space, SBOM Tool takes a focused approach. Inferred · not functionally tested: It helps developers generate software bills of materials and identify vulnerabilities in the current code workspace. Inferred · not functionally tested: SBOM Tool is a B2B product aimed at software developers and security engineers. Basis unknown · not verified: SBOM Tool costs nothing to use. Basis unknown · not verified: It runs on the web, Windows, macOS, and Linux.

masahiroid builds and maintains SBOM Tool, and it first shipped in 2026. Inferred · not functionally tested: Among its 6 catalogued features are SBOM generation, vulnerability checks, and cycloneDX export.

Summary written by a language model from the project’s public pages.

Tasks: Inferred · not functionally tested

  • SBOM generation
  • Vulnerability checks
  • CycloneDX export
  • SPDX support
  • npm audit
  • Trivy scanning

Topics: Inferred · not functionally tested

Tags
sbom-generationdependency-scanningcyclonedxspdxtrivy

JSON profile · Text profile · Access guide

Built with & integrations

Runs on
BrowserWindowsmacOSLinux

Trust & compliance

Public signals
HTTPSFree tierStore listing found

Indexing history

1

What PulseGate has recorded for this listing

  1. Indexed9 Oct · 03:01 UTC
    SBOM Tool seen via VS Code Marketplace
    Source: VS Code Marketplace · Open

Frequently asked questions about SBOM Tool

What does SBOM Tool do?
Inferred · not functionally tested: SBOM Tool helps developers generate software bills of materials and identify vulnerabilities in the current code workspace. It is catalogued under Application security & vulnerability scanning on PulseGate.
Who should use SBOM Tool?
Inferred · not functionally tested: SBOM Tool is a B2B product built for software developers and security engineers.
Is SBOM Tool free?
Basis unknown · not verified: Yes — SBOM Tool is free to use.
What platforms does SBOM Tool run on?
Basis unknown · not verified: SBOM Tool runs on the web, Windows, macOS, and Linux.
Is SBOM Tool still active?
Unverified. SBOM Tool has not been re-checked since it entered the index, so there is no finding either way — and only a positive finding would say otherwise.
What are alternatives to SBOM Tool?
Similar projects tracked by PulseGate include gcve-sbom-analyzer, SCANOSS SBOM Workbench, and sbom-sentinel.gcve-sbom-analyzerSCANOSS SBOM Workbenchsbom-sentinel
Who makes SBOM Tool?
SBOM Tool is developed by masahiroid.
How long has SBOM Tool been around?
SBOM Tool first shipped in 2026.

Similar projects

Closest matches by what these projects do