Current SBOM is present

This policy checks if a current SBOM (not older than one month) is present.

No attestation available

No attestation available for this control. This control expects a https://cyclonedx.org/bom predicate type. Use the following command to create such an attestation and upload it to the container-registry as well as to DevGuard devguard-scanner attest --token <Personal access token> --predicateType "https://cyclonedx.org/bom" <json file>

Status

Evaluation result after comparing the policy with the current state of the asset
Could not evaluate control

Update the attestation using the following command
devguard-scanner attest --token <Personal access token> --predicateType "https://cyclonedx.org/bom" <json file>

Create a Personal Access Token

To use the Devguard-Scanner, you need to create a Personal Access Token. You can create such a token by clicking the button below.

Manage your tokens
Copyright © 2025 L3montree GmbH and the DevGuard Contributors. All rights reserved. Version 2ab7b793efd72421aea8c3a994ac60202bf1b3a5