Glossary · Software Bill of Materials

SBOM

An SBOM is a machine-readable inventory of every component in a piece of software, commonly CycloneDX or SPDX. It underpins dependency scanning, supply-chain response and vendor review.

How apPosture treats it

apPosture is a self-hosted, proof-based ASPM platform: it confirms findings with real, safe exploits, correlates every source into one risk-weighted posture, and runs entirely inside your infrastructure with a local LLM. See the proof methodology or the platform.

Related terms
SCAASPM

See it on one of your own apps - live in 30 minutes

From discovery to a proven attack chain. A PoC in your own environment.