Hacker News new | past | comments | ask | show | jobs | submit login

At my employer we generate sboms for all libraries we use. Why would we pay for them?



It sounds like you and your fellow employees are generating those sboms while on the clock. In other words, your employer is paying for those sboms, indirectly, already. From your employer's point of view, sboms are an expense. Maybe it's a small expense, maybe it's a big one. If it gets big enough, I suppose they might consider outsourcing it.


It's an automated process. Takes a day at most to set it up if you don't have it already


I takes one second with a good script. I don’t understand what kind of SBOM they are writing.




Join us for AI Startup School this June 16-17 in San Francisco!

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: