Features
Generate SBOMs for Your Applications
Invicti's SBOM Radar functionality allows you to generate SBOM in your applications in multiple formats (CycloneDX, SPDX etc.), quickly search which components are being used in which project and also export that data easily.
Automatically Check for Vulnerabilities
Generating a Software Bill of Materials makes you aware of the open-source components used in your project but it will not check for all the vulnerabilities that come with those open-source components.
Invicti's SBOM Radar runs automated checks on the vulnerability status of your SBOM and can create alerts for vulnerable components in your applications.
Check for License Risks
License risks are one of the most overlooked aspects of open-source components being used in software. They might have huge legal consequences since some licenses cannot be used for commercial purposes or oblige you to make your source code available under the same license.
Invicti lists the license risk associated with open-source components so that you can easily raise the flag and start a conversation with your engineering teams on the usage of that specific component and its license.
Create Rules to Manage SBOM Risks
Because managing thousands of open-source components manually is not scalable, security teams have to automate the management of the processes around the Software Bill of Materials.
With the Invicti Platform, you can set up automation rules that can stop the builds in CI/CD pipelines or send alerts on Slack or Microsoft Teams as needed.