CycloneDX SBOM artifacts should be generated by CI/CD (at release time?) instead of being committed to the repository.
CycloneDX SBOM artifacts should be generated by CI/CD (at release time?) instead of being committed to the repository.