# SBOM Generator with CycloneDX

> Generates Software Bill of Materials in CycloneDX 1.5 format using cdxgen and syft. Enriches component data with license detection from clearlydefined.io and vulnerability cross-referencing via OSV.dev.

- Skill: `agentskillexchange/sbom-generator-with-cyclonedx` (Agent Skill)
- Install (CLI): `npx skillmds@latest add agentskillexchange/sbom-generator-with-cyclonedx`
- Raw SKILL.md: https://api.skillmd.com/api/skills/agentskillexchange/sbom-generator-with-cyclonedx/raw
- Safety review: pending (external: skill-scanner PASS, skillspector PASS)
- Works with: Claude Code, Claude.ai, OpenAI Codex
- Category: Web & Frontend
- Author: agentskillexchange (https://skillmd.com/u/agentskillexchange)
- Updated: 2026-09-08
- Page: https://skillmd.com/skills/agentskillexchange/sbom-generator-with-cyclonedx

---


# SBOM Generator with CycloneDX

Generates Software Bill of Materials in CycloneDX 1.5 format using cdxgen and syft. Enriches component data with license detection from clearlydefined.io and vulnerability cross-referencing via OSV.dev.

## Installation

Use the upstream install or setup path that matches your environment:
- brew install cyclonedx/cyclonedx/cyclonedx-cli

Requirements and caveats from upstream:
- [![Docker Image](https://img.shields.io/badge/docker-image-brightgreen?style=flat&logo=docker)](https://hub.docker.com/r/cyclonedx/cyclonedx-cli)
- # Docker Image
- The CycloneDX CLI tool can also be run using docker docker run cyclonedx/cyclonedx-cli.

Basic usage or getting-started notes:
- cyclonedx [command] [options]
- Options:
- --version Show version information

- Source: https://github.com/CycloneDX/cyclonedx-cli
- Extracted from upstream docs: https://raw.githubusercontent.com/CycloneDX/cyclonedx-cli/HEAD/README.md

## Documentation

- https://github.com/CycloneDX/cyclonedx-cli#readme

## Source

- [Agent Skill Exchange](https://agentskillexchange.com/skills/sbom-generator-cyclonedx/)

