ai-sbom
Generic PyPI alias for tibet-ai-sbom.
The same BSI/G7 SBOM-for-AI implementation, reachable under a shorter,
more discoverable name. The package depends strictly on
tibet-ai-sbom of the same version and re-exports everything.
If you came here from the BSI / G7 Software Bill of Materials for AI — Minimum Elements paper and were looking for a Python implementation of the cluster codes, you are in the right place.
Install
pip install ai-sbom
ai-sbom depends on a pinned version of tibet-ai-sbom, so the two
move together — there is no version skew.
Quick start
ai-sbom version
ai-sbom clusters
ai-sbom clusters --cluster MOD
ai-sbom code AISBOM-MD-003
ai-sbom scan /path/to/workspace
The underlying command is tibet-ai-sbom. Both entry points are
installed and equivalent.
Cluster codes
This package exposes the BSI cluster codes in CVE-style format:
| Code prefix | Cluster |
|---|---|
| AISBOM-MD- | Metadata |
| AISBOM-SLP- | System Level Properties |
| AISBOM-MOD- | Models |
| AISBOM-DSE- | Dataset Properties |
| AISBOM-INF- | Infrastructure |
| AISBOM-SEC- | Security Properties |
| AISBOM-KPI- | Key Performance Indicators |
Example: AISBOM-MD-001 refers to the SBOM author element of the
Metadata cluster.
Conformance status
See tibet-ai-sbom's
CONFORMANCE.md
for the honest per-cluster coverage status, and
ROADMAP.md
for the phased plan to full BSI alignment.
Reference
Software Bill of Materials for AI — Minimum Elements, Bundesamt für Sicherheit in der Informationstechnik (BSI), in cooperation with G7 partners, 2026.
License
MIT. Same as tibet-ai-sbom.
Authors
- Jasper van de Meent · Humotica
- Root AI (Claude) · Humotica
One love, one fAmIly!
Enterprise
For private hub hosting, SLA support, custom integrations, or compliance guidance:
| Enterprise | enterprise@humotica.com |
| Support | support@humotica.com |
| Security | security@humotica.com |
Credits
Designed by Jasper van de Meent. Built by Jasper and Root AI as part of HumoticaOS.
Stack-positie: Groep evidence · Bootstrap = OSAPI-handshake naar tibet + jis (fail → snaft-rule + tibet-pol-rapport) · ← tibet-sbom · tibet-wayback → · See STACK.md · See demo/golden-path/ for the spine end-to-end.
Metadata
Release files for ai-sbom 0.2.3
For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.
Source distribution (sdist)
| File | Size | Uploaded | |
|---|---|---|---|
| ai_sbom-0.2.3.tar.gz | 5.2 kB | Details |
Built distribution (wheel)
| File | Interpreter | ABI | Platform | Reset |
|---|---|---|---|---|
| ai_sbom-0.2.3-py3-none-any.whl | Python 3 | none | any | Details |
Total release size: 9.0 kB
Release files / ai_sbom-0.2.3.tar.gz
| Download URL | ai_sbom-0.2.3.tar.gz |
|---|---|
| Size | 5.2 kB |
| Tags | Source |
|
SHA-256 checksum How to use checksums |
6917a9491cbd198f02b8709ffbe9a2407ea56963377a326bfec6131059d0328a
|
|
BLAKE2b-256 checksum How to use checksums |
060ebf39a84c4f14411db3879197a2192ac4b61c29c0b76b4b5d241291a014b6
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/6.2.0 CPython/3.13.5
|
Release files / ai_sbom-0.2.3-py3-none-any.whl
| Download URL | ai_sbom-0.2.3-py3-none-any.whl |
|---|---|
| Size | 3.8 kB |
| Tags | Python 3 |
|
SHA-256 checksum How to use checksums |
73fd8f53af548fa79bec2748293896f337b5ed5279ad0a41772053456741b0e6
|
|
BLAKE2b-256 checksum How to use checksums |
cb4fa87a15ef5ac11835c0ae06f5f2e7d249d87ff90965231185335dd552da32
|
| Upload date | |
|
Uploaded using Trusted Publishing? What is trusted publishing? |
No |
| Uploaded via |
twine/6.2.0 CPython/3.13.5
|