Stop Guessing Your Dependencies: How to Make SBOMs Actionable With PURLs
About the Security Event
Software Bills of Materials (SBOMs) are designed to help organizations track software components and manage supply chain risk, but inconsistencies in how packages are identified can limit their usefulness. The same dependency may appear under different names depending on the tool, ecosystem, or SBOM format, making vulnerability tracking and ownership identification difficult. This webinar explores how Package URLs (PURLs) provide a standardized way to identify software components.
The session explains how PURLs create consistent identifiers that allow teams to compare SBOM data across tools and formats. Speakers will discuss how standardized package identification improves vulnerability matching, triage, and remediation workflows. Attendees will also learn how PURLs support stronger SBOM validation and compliance processes, helping development and application security teams make software supply chain security data easier to trust and act on.