

Syft
CLI tool and library for generating a Software Bill of Materials from container images and filesystems
winget install --id=Anchore.Syft -e Description
Syft is a powerful and easy-to-use open-source tool for generating Software Bill of Materials (SBOMs) for container images and filesystems. It provides detailed visibility into the packages and dependencies in your software, helping you manage vulnerabilities, license compliance, and software supply chain security.
Syft is available through winget as package ID Anchore.Syft, with version 1.44.0. Use the install command above to set it up on Windows without downloading a separate installer manually.
Related Apps
A vulnerability scanner for container images and filesystems
Provides a language-agnostic way to express coding assumptions in .NET programs.
.NET Reactor is a powerful code protection and software licensing system for software written for the .NET Framework, and supports all languages that generate .NET assemblies.