SBOM completeness
Is a complete SBOM available for every shipped software & firmware artefact?
Why it matters ▾
A Software Bill of Materials lists every open-source and third-party component (and version) inside a build. Without it you cannot answer 'are we affected by CVE-X?' in hours. SBOMs must cover firmware and embedded artefacts, not just server software.
