While everyone's debating SBOM formats, the real revolution is happening:
❌ Software inventory
✅ System risk orchestrator
Legacuy SBOMs weren't built for distributed architectures where risk flows through connections, not just components.
🔗 anchore.com/blog/spdx-3-0-…#SBOM
No CVE yet, just a known-bad package? Our blog walks through the use of Anchore Enterprise's API to query by package version instead of waiting for an ID to exist. anchore.com/blog/what-your…
New in Anchore Enterprise v6.2: native AI model detection.
GGUF files and Docker Models now get indexed as packages in your SBOM catalog, just like your open source deps. anchore.com/blog/extending…