Skip to main content

ai-sbom

Generic PyPI alias for tibet-ai-sbom.

The same BSI/G7 SBOM-for-AI implementation, reachable under a shorter, more discoverable name. The package depends strictly on tibet-ai-sbom of the same version and re-exports everything.

If you came here from the BSI / G7 Software Bill of Materials for AI — Minimum Elements paper and were looking for a Python implementation of the cluster codes, you are in the right place.

Install

pip install ai-sbom

ai-sbom depends on a pinned version of tibet-ai-sbom, so the two move together — there is no version skew.

Quick start

ai-sbom version
ai-sbom clusters
ai-sbom clusters --cluster MOD
ai-sbom code AISBOM-MD-003
ai-sbom scan /path/to/workspace

The underlying command is tibet-ai-sbom. Both entry points are installed and equivalent.

Cluster codes

This package exposes the BSI cluster codes in CVE-style format:

Code prefix Cluster
AISBOM-MD- Metadata
AISBOM-SLP- System Level Properties
AISBOM-MOD- Models
AISBOM-DSE- Dataset Properties
AISBOM-INF- Infrastructure
AISBOM-SEC- Security Properties
AISBOM-KPI- Key Performance Indicators

Example: AISBOM-MD-001 refers to the SBOM author element of the Metadata cluster.

Conformance status

See tibet-ai-sbom's CONFORMANCE.md for the honest per-cluster coverage status, and ROADMAP.md for the phased plan to full BSI alignment.

Reference

Software Bill of Materials for AI — Minimum Elements, Bundesamt für Sicherheit in der Informationstechnik (BSI), in cooperation with G7 partners, 2026.

License

MIT. Same as tibet-ai-sbom.

Authors

  • Jasper van de Meent · Humotica
  • Root AI (Claude) · Humotica

One love, one fAmIly!

Enterprise

For private hub hosting, SLA support, custom integrations, or compliance guidance:

Enterprise enterprise@humotica.com
Support support@humotica.com
Security security@humotica.com

Credits

Designed by Jasper van de Meent. Built by Jasper and Root AI as part of HumoticaOS.


Stack-positie: Groep evidence · Bootstrap = OSAPI-handshake naar tibet + jis (fail → snaft-rule + tibet-pol-rapport) · ← tibet-sbom · tibet-wayback → · See STACK.md · See demo/golden-path/ for the spine end-to-end.

Metadata

Release files for ai-sbom 0.2.3

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for ai-sbom 0.2.3
File Size Uploaded
ai_sbom-0.2.3.tar.gz 5.2 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for ai-sbom 0.2.3
File Interpreter ABI Platform
ai_sbom-0.2.3-py3-none-any.whl Python 3 none any Details

Total release size: 9.0 kB

Release files / ai_sbom-0.2.3.tar.gz

Download URL ai_sbom-0.2.3.tar.gz
Size 5.2 kB
Tags Source
SHA-256 checksum
How to use checksums
6917a9491cbd198f02b8709ffbe9a2407ea56963377a326bfec6131059d0328a
BLAKE2b-256 checksum
How to use checksums
060ebf39a84c4f14411db3879197a2192ac4b61c29c0b76b4b5d241291a014b6
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/6.2.0 CPython/3.13.5

Release files / ai_sbom-0.2.3-py3-none-any.whl

Download URL ai_sbom-0.2.3-py3-none-any.whl
Size 3.8 kB
Tags Python 3
SHA-256 checksum
How to use checksums
73fd8f53af548fa79bec2748293896f337b5ed5279ad0a41772053456741b0e6
BLAKE2b-256 checksum
How to use checksums
cb4fa87a15ef5ac11835c0ae06f5f2e7d249d87ff90965231185335dd552da32
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/6.2.0 CPython/3.13.5

Release history Release notifications | RSS feed

This release

0.2.3 This release

2 release files

0.1.3

2 release files

0.1.2

2 release files

0.1.1

2 release files

0.1.0

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page