How to Create an SPDX SBOM
This video walks you through how to generate an SPDX Software Bill of Materials (SBOM) using Mend.io.
You’ll see how fast and straightforward it is to create a complete, standards-based SBOM that supports software supply chain security, compliance, and transparency requirements.
What is an SPDX SBOM?
SPDX is a widely adopted open standard for communicating software bill of materials information. It provides a detailed inventory of software components, dependencies, and licenses, enabling organizations to improve visibility, security posture, and governance across their software supply chain.
Generating an SBOM in SPDX format with Mend.io helps you meet regulatory requirements, streamline internal compliance workflows, and maintain accurate documentation without disrupting development.
How to generate an SPDX SBOM with Mend.io
In this demo, you’ll learn how Mend.io makes it easy to generate an SPDX SBOM directly from your scanned projects. The video shows each step—from choosing your project to exporting and downloading your SBOM in SPDX format.
The resulting SBOM delivers essential metadata about components, versions, licenses, and vulnerabilities, giving you full transparency into your software composition. Whether you’re preparing for customer audits, meeting industry standards, or strengthening supply chain security, this walkthrough demonstrates how Mend.io enables you to produce reliable, SPDX-compliant SBOMs in just a few clicks.