Skip to main content

AI-SBOM — generic alias for tibet-ai-sbom. BSI/G7 SBOM-for-AI implementation with cluster codes (AISBOM-MD/SLP/MOD/DSE/INF/SEC/KPI).

Project description

ai-sbom

Generic PyPI alias for tibet-ai-sbom.

The same BSI/G7 SBOM-for-AI implementation, reachable under a shorter, more discoverable name. The package depends strictly on tibet-ai-sbom of the same version and re-exports everything.

If you came here from the BSI / G7 Software Bill of Materials for AI — Minimum Elements paper and were looking for a Python implementation of the cluster codes, you are in the right place.

Install

pip install ai-sbom

ai-sbom depends on a pinned version of tibet-ai-sbom, so the two move together — there is no version skew.

Quick start

ai-sbom version
ai-sbom clusters
ai-sbom clusters --cluster MOD
ai-sbom code AISBOM-MD-003
ai-sbom scan /path/to/workspace

The underlying command is tibet-ai-sbom. Both entry points are installed and equivalent.

Cluster codes

This package exposes the BSI cluster codes in CVE-style format:

Code prefix Cluster
AISBOM-MD- Metadata
AISBOM-SLP- System Level Properties
AISBOM-MOD- Models
AISBOM-DSE- Dataset Properties
AISBOM-INF- Infrastructure
AISBOM-SEC- Security Properties
AISBOM-KPI- Key Performance Indicators

Example: AISBOM-MD-001 refers to the SBOM author element of the Metadata cluster.

Conformance status

See tibet-ai-sbom's CONFORMANCE.md for the honest per-cluster coverage status, and ROADMAP.md for the phased plan to full BSI alignment.

Reference

Software Bill of Materials for AI — Minimum Elements, Bundesamt für Sicherheit in der Informationstechnik (BSI), in cooperation with G7 partners, 2026.

License

MIT. Same as tibet-ai-sbom.

Authors

  • Jasper van de Meent · Humotica
  • Root AI (Claude) · Humotica

One love, one fAmIly!

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

ai_sbom-0.1.0.tar.gz (4.3 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

ai_sbom-0.1.0-py3-none-any.whl (3.4 kB view details)

Uploaded Python 3

File details

Details for the file ai_sbom-0.1.0.tar.gz.

File metadata

  • Download URL: ai_sbom-0.1.0.tar.gz
  • Upload date:
  • Size: 4.3 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.13.5

File hashes

Hashes for ai_sbom-0.1.0.tar.gz
Algorithm Hash digest
SHA256 254edc3998d98aef0d934e94b5dd88426be18045538cb7e0d53607b717e2cc0f
MD5 f8fd42dee100292564d58cf0b1076ea7
BLAKE2b-256 86543a53fbd9be3a0bb9263d92bfc4d6a4176fc3500d95ffee33e7b0b935db6c

See more details on using hashes here.

File details

Details for the file ai_sbom-0.1.0-py3-none-any.whl.

File metadata

  • Download URL: ai_sbom-0.1.0-py3-none-any.whl
  • Upload date:
  • Size: 3.4 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: twine/6.2.0 CPython/3.13.5

File hashes

Hashes for ai_sbom-0.1.0-py3-none-any.whl
Algorithm Hash digest
SHA256 1989e5b9cba5ff5277f0a4e00af7a20aa776a2b687ab9de8da75956a7c4566be
MD5 39fdf6cbbce6d75c2b17bf1180ee5a7a
BLAKE2b-256 65428ce69b8b21616332764ec0112292aed7c56ce6d8665cfd7314e91e07e99b

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page