ProGet's Reporting & Software Composition Analysis (SCA) features can help you identify vulnerabilities and license violations in your applications by keeping track of the open-source and third-party software components (i.e. packages) they use. This is done integrating ProGet into your CI/CD pipeline, where it will generate Software Bill of Materials (SBOM) documents and continuously monitor those SBOMs for vulnerabilities and licensing issues.
Software Composition Analysis is done integrating ProGet into your CI/CD pipeline, where it will generate Software Bill of Materials (SBOM) documents and continuously monitor those SBOMs for vulnerabilities and licensing issues. You can also manually import SBOM documents or create projects.