Changguo's SIT Tool Integrated into GitHub & AtomGit

Published: Oct 31, 2025 by Ruiqiao Qiu

To address the widespread issues of inaccuracy, non-compliance, and incompleteness in the SBOMs generated by existing mainstream tools, we design and implement an automated SBOM generation tool based on incremental construction.

The tool introduces an SBOM IR to unify and transform multiple SBOM standards during the generation process, employs schema validation to ensure output compliance, and applies a double cross-validation technique to enhance the precision and consistency of dependency identification.

Experimental results demonstrate significant improvements in the accuracy, compliance, and completeness of generated SBOMs.

🔧 SIT tool has now been integrated into platforms such as GitHub and AtomGit.

SITtool

Latest Posts

One paper accepted by TOSEM!

Haiqiao’s study on understanding the characteristics and rationale of library migrations in the C/C++ ecosystem is accepted by TOSEM. Congratulations to Haiqiao!

One paper accepted by CSCW 2026!

Hengzhi’s study on collaborative development paradigm divergence between open source software and open source AI models is accepted by CSCW 2026. Congratulations to Hengzhi!

One paper accepted by FSE 2026!

Ziheng’s study on cross-ecosystem software composition analysis is accepted by FSE 2026 Tool Demonstrations Track. Congratulations to Ziheng!