DEEPBOM Python launcher
This package is a zero-analysis-logic launcher for the same platform-specific DEEPBOM engine used by the npm CLI release. Each wheel binds its operating system, architecture, engine SHA-256, and canonical TFLite WASM SHA-256 in an installed manifest. No parser or numerical rule is reimplemented in Python.
An experimental typed facade invokes that same verified engine and converts its JSON and exit-code contracts into Python values and exceptions:
from deepbom import (
DeepBomPolicyBlocked, audit, capabilities, capture_contract, diff,
tensor_inventory, tensors, verify_bom, verify_contract,
)
caps = capabilities()
envelope = audit("model.gguf")
selected = audit("model.gguf", sections=["summary", "findings"])
try:
gated = audit("model.safetensors", gate="defects")
except DeepBomPolicyBlocked as blocked:
gated = blocked.document
rows = tensors("model.gguf")
inventory = tensor_inventory("model.gguf")
comparison = diff("baseline.gguf", "candidate.gguf", tensors=True)
baseline = capture_contract("model.onnx")
contract_result = verify_contract("candidate.onnx", "baseline.interface-contract.json")
bom_result = verify_bom("model.onnx", "supplied.cdx.json")
audit() defaults to the canonical envelope, or to analysis selection when
sections are supplied without an explicit output. It accepts the CLI-equivalent
gate="defects" and policy="engineering"|"regulatory" controls plus explicit
timeout and maximum-output-byte bounds. gate and policy are mutually exclusive.
Exit 1 raises DeepBomInvocationError, exit 2
raises DeepBomPolicyBlocked, and exit 3 raises
DeepBomIncompleteBinding; exit 4 raises DeepBomIdentityMismatch. Policy
exceptions retain any completed JSON result
as .document. tensors() converts exact counts to Python int and decimal
ratios to decimal.Decimal; tensor_inventory() preserves the raw JSON document.
The facade is experimental in 1.96.x, and the CLI schemas remain
the compatibility contract.
deepbom audit model.tflite --compact
deepbom audit model.onnx --format cyclonedx
deepbom audit model.onnx --format sarif --output deepbom.sarif --fail-on high
deepbom capabilities --compact
deepbom audit Model.mlpackage --compact
deepbom audit safetensors-repository/ --compact
deepbom audit model.pte --executorch-build deepbom.executorch-build.json --compact
deepbom verify model.onnx --bom supplied.cdx.json --render markdown
deepbom contract capture model.onnx -o baseline.interface-contract.json
deepbom capabilities --format agent-text
ONNX external data next to the model is discovered only from safe serialized
references. Use --external-data-dir to bind a different explicit root.
ExecuTorch PTE audits can additionally bind a selected source/build and binary
inventory with --executorch-build; backend execution remains unobserved.
Set DEEPBOM_ENGINE only for a deliberately supplied engine build and bind it
with DEEPBOM_ENGINE_SHA256. TensorRT options import configuration or observed
parser evidence; NVIDIA runtime libraries are not bundled.
For the installed version, deepbom --help and deepbom capabilities --compact
are authoritative. The current source inventory is maintained in the
generated CLI reference.
This public channel package is licensed under Apache-2.0. Protected analyzers and private rulepack-generation sources are not included.
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distributions
Built Distributions
Filter files by name, interpreter, ABI, and platform.
If you're not sure about the file name format, learn more about wheel file names.
Copy a direct link to the current filters
File details
Details for the file deepbom-1.99.1-py3-none-win_arm64.whl.
File metadata
- Download URL: deepbom-1.99.1-py3-none-win_arm64.whl
- Upload date:
- Size: 31.3 MB
- Tags: Python 3, Windows ARM64
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
30ea06c893558bb57ee7a2f82b17f23b5bee22c3a18977c79e88a9b19873b091
|
|
| MD5 |
01099da53e22945086ddda746a6e22e0
|
|
| BLAKE2b-256 |
144b4e42b331a9dc4e844ad11a0559824c700687193b3afb093766f7da761336
|
Provenance
The following attestation bundles were made for deepbom-1.99.1-py3-none-win_arm64.whl:
Publisher:
release-channels.yml on JunHwan-Kwon/deepbom
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
deepbom-1.99.1-py3-none-win_arm64.whl -
Subject digest:
30ea06c893558bb57ee7a2f82b17f23b5bee22c3a18977c79e88a9b19873b091 - Sigstore transparency entry: 2825821473
- Sigstore integration time:
-
Permalink:
JunHwan-Kwon/deepbom@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Branch / Tag:
refs/tags/channels-v1.99.1 - Owner: https://github.com/JunHwan-Kwon
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release-channels.yml@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Trigger Event:
workflow_dispatch
-
Statement type:
File details
Details for the file deepbom-1.99.1-py3-none-win_amd64.whl.
File metadata
- Download URL: deepbom-1.99.1-py3-none-win_amd64.whl
- Upload date:
- Size: 35.1 MB
- Tags: Python 3, Windows x86-64
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
4d1feeb7843eae486cd9606b18412af3211e896aec5e4aa1182ef586f46cf30d
|
|
| MD5 |
f4f6bd69296beb17f8dcdea40a0f717a
|
|
| BLAKE2b-256 |
6e210a1dc514862a1b3b184e260135aaf4b477b7494bfe4117d0e8e758625e4a
|
Provenance
The following attestation bundles were made for deepbom-1.99.1-py3-none-win_amd64.whl:
Publisher:
release-channels.yml on JunHwan-Kwon/deepbom
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
deepbom-1.99.1-py3-none-win_amd64.whl -
Subject digest:
4d1feeb7843eae486cd9606b18412af3211e896aec5e4aa1182ef586f46cf30d - Sigstore transparency entry: 2825821497
- Sigstore integration time:
-
Permalink:
JunHwan-Kwon/deepbom@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Branch / Tag:
refs/tags/channels-v1.99.1 - Owner: https://github.com/JunHwan-Kwon
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release-channels.yml@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Trigger Event:
workflow_dispatch
-
Statement type:
File details
Details for the file deepbom-1.99.1-py3-none-manylinux_2_28_x86_64.whl.
File metadata
- Download URL: deepbom-1.99.1-py3-none-manylinux_2_28_x86_64.whl
- Upload date:
- Size: 43.2 MB
- Tags: Python 3, manylinux: glibc 2.28+ x86-64
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
2725612a16d6a5c2133c1d8f4c0d491367c1490e99cc8f94e5f8065125bfe258
|
|
| MD5 |
c434b024ee68c4ff830919b6aa8aeb8f
|
|
| BLAKE2b-256 |
e033640d9a5d3a6bc55deacbabb1ea6ae3bf1458e28534c3aef030887fbacb71
|
Provenance
The following attestation bundles were made for deepbom-1.99.1-py3-none-manylinux_2_28_x86_64.whl:
Publisher:
release-channels.yml on JunHwan-Kwon/deepbom
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
deepbom-1.99.1-py3-none-manylinux_2_28_x86_64.whl -
Subject digest:
2725612a16d6a5c2133c1d8f4c0d491367c1490e99cc8f94e5f8065125bfe258 - Sigstore transparency entry: 2825821440
- Sigstore integration time:
-
Permalink:
JunHwan-Kwon/deepbom@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Branch / Tag:
refs/tags/channels-v1.99.1 - Owner: https://github.com/JunHwan-Kwon
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release-channels.yml@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Trigger Event:
workflow_dispatch
-
Statement type:
File details
Details for the file deepbom-1.99.1-py3-none-manylinux_2_28_aarch64.whl.
File metadata
- Download URL: deepbom-1.99.1-py3-none-manylinux_2_28_aarch64.whl
- Upload date:
- Size: 43.0 MB
- Tags: Python 3, manylinux: glibc 2.28+ ARM64
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
05eb702ba3ca086c1fc0b5de59bb1b7ac908bcc5a013595e87385bc088e216db
|
|
| MD5 |
9fe120b9a1fe64b4d801741701f1f7e0
|
|
| BLAKE2b-256 |
dee3a0464b01bb7248c3348eeab6ceafe1d89ed95e85f684e1ffa14fc3e371fc
|
Provenance
The following attestation bundles were made for deepbom-1.99.1-py3-none-manylinux_2_28_aarch64.whl:
Publisher:
release-channels.yml on JunHwan-Kwon/deepbom
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
deepbom-1.99.1-py3-none-manylinux_2_28_aarch64.whl -
Subject digest:
05eb702ba3ca086c1fc0b5de59bb1b7ac908bcc5a013595e87385bc088e216db - Sigstore transparency entry: 2825821454
- Sigstore integration time:
-
Permalink:
JunHwan-Kwon/deepbom@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Branch / Tag:
refs/tags/channels-v1.99.1 - Owner: https://github.com/JunHwan-Kwon
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release-channels.yml@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Trigger Event:
workflow_dispatch
-
Statement type:
File details
Details for the file deepbom-1.99.1-py3-none-macosx_14_0_x86_64.whl.
File metadata
- Download URL: deepbom-1.99.1-py3-none-macosx_14_0_x86_64.whl
- Upload date:
- Size: 40.5 MB
- Tags: Python 3, macOS 14.0+ x86-64
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
ca81d2b0e5318307fe44fe40a10d6091efb00aa9ae5673c8f7316f05af724aa6
|
|
| MD5 |
5b2a735a0838723cd51ed634795d2b69
|
|
| BLAKE2b-256 |
4178d4a31022e5ebeb97fa6088c9b38676bb01846a41e0d7d9daa7e995dfc1bc
|
Provenance
The following attestation bundles were made for deepbom-1.99.1-py3-none-macosx_14_0_x86_64.whl:
Publisher:
release-channels.yml on JunHwan-Kwon/deepbom
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
deepbom-1.99.1-py3-none-macosx_14_0_x86_64.whl -
Subject digest:
ca81d2b0e5318307fe44fe40a10d6091efb00aa9ae5673c8f7316f05af724aa6 - Sigstore transparency entry: 2825821489
- Sigstore integration time:
-
Permalink:
JunHwan-Kwon/deepbom@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Branch / Tag:
refs/tags/channels-v1.99.1 - Owner: https://github.com/JunHwan-Kwon
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release-channels.yml@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Trigger Event:
workflow_dispatch
-
Statement type:
File details
Details for the file deepbom-1.99.1-py3-none-macosx_14_0_arm64.whl.
File metadata
- Download URL: deepbom-1.99.1-py3-none-macosx_14_0_arm64.whl
- Upload date:
- Size: 39.3 MB
- Tags: Python 3, macOS 14.0+ ARM64
- Uploaded using Trusted Publishing? Yes
- Uploaded via:
twine/7.0.0 CPython/3.13.14
File hashes
| Algorithm | Hash digest | |
|---|---|---|
| SHA256 |
78827dd8b20c89dfe0a0bec02455732d7121f8fa40e6b6da95c1e6d42b97199e
|
|
| MD5 |
0eacdbc3ecedf6ff8e1e75217555fa21
|
|
| BLAKE2b-256 |
e21a6792020a4c612782dfefbd75b899e98ad8fad12aa726ae1efd9d1bf43d1f
|
Provenance
The following attestation bundles were made for deepbom-1.99.1-py3-none-macosx_14_0_arm64.whl:
Publisher:
release-channels.yml on JunHwan-Kwon/deepbom
-
Statement:
-
Statement type:
https://in-toto.io/Statement/v1 -
Predicate type:
https://docs.pypi.org/attestations/publish/v1 -
Subject name:
deepbom-1.99.1-py3-none-macosx_14_0_arm64.whl -
Subject digest:
78827dd8b20c89dfe0a0bec02455732d7121f8fa40e6b6da95c1e6d42b97199e - Sigstore transparency entry: 2825821465
- Sigstore integration time:
-
Permalink:
JunHwan-Kwon/deepbom@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Branch / Tag:
refs/tags/channels-v1.99.1 - Owner: https://github.com/JunHwan-Kwon
-
Access:
public
-
Token Issuer:
https://token.actions.githubusercontent.com -
Runner Environment:
github-hosted -
Publication workflow:
release-channels.yml@e745104b3ee64cf0257d84ac96a530da5ea532c4 -
Trigger Event:
workflow_dispatch
-
Statement type: