rustio rustio.net
63

cyclonedx-bom

v0.8.1 Growing

CycloneDX Software Bill of Materials Library

Apache-2.0 Edition 2021 MSRV 1.85.0
EncodingParser implementations #dependencies#components#bom#owasp#sbom

Quick Verdict

  • โœ“Actively maintained (updated 8d ago)
  • !Pre-1.0: API may have breaking changes
  • โœ“Trusted by 203 crates
  • โœ“Permissive license (Apache-2.0)

Security

Checking security advisories...
Downloads
722.1K
Dependents
203
Releases
19
Size
189KB

Deep Insights

๐Ÿ“ˆ
Strong growth momentum

190.2K downloads in the last 30 days (6.3K/day), up 70% from the previous period.

๐Ÿ”—
Moderate adoption

203 crates depend on cyclonedx-bom. Reasonable ecosystem adoption, though not yet a core dependency.

๐Ÿ”ฌ
Pre-1.0 for over a year

Despite being 5+ years old, cyclonedx-bom hasn't reached 1.0 yet. Expect potential API changes between versions.

๐ŸŒŸ
Used by top crates

Notable dependents include cargo-cyclonedx, libcnb, sbom-walker, hipcheck, uv-resolver. When high-quality crates choose cyclonedx-bom, it's a strong quality signal.

Health Breakdown

Maintenance 17/25

Recency, release consistency, active ratio

Quality 11/25

Yanked ratio, deps, size, maturity, features

Community 16/20

Reverse deps, ownership, ecosystem

Popularity 7/15

Downloads, momentum, growth trend

Documentation 12/15

Docs, repo, license, metadata

Download Trend

Daily downloads ยท last 90 days
4K/day avg+153%
02K4K6K8K12/291/162/32/213/113/28

Top Dependents

Version Adoption

v0.8.0
83%
v0.6.2
6%
v0.7.0
5%
v0.4.3
3%
v0.5.0
3%

Release Timeline

19 releasessince 2020
J
F
M
A
M
J
J
A
S
O
N
D
2020
1
2021
4
2022
5
2023
2
2024
6
2025
2026
1
Less
More

README

Loading README...

Maintainers

Dependencies
18
direct dependencies
Dependents
203
crates depend on cyclonedx-bom

Similar Crates