AssessmentsMaturityMaturity AssessmentA structured self-assessment to benchmark software transparency maturity across SBOM operations, VEX coordination, and supplier risk management.Progress: 0 / 20 questions answeredReset assessmentGeneral FoundationsIn progressOrganization-wide governance, ownership, and operating model for SBOM and VEX practices.SBOM Generation and QualityIn progressHow well SBOMs are generated, validated, signed, versioned, and coordinated with the VEX lifecycle.Supplier Risk ManagementIn progressHow effectively the organization requests, evaluates, and acts on supplier SBOM/VEX information.Explorer GuideFigure out where to start with SBOMs, VEX, and VDR based on your situationExternal ResourcesCurated index of authoritative documents for software transparency work