Published January 20, 2025 | Version v1
Dataset Open

Software Bills of Materials in Maven Central

  • 1. ROR icon Université de Montréal
  • 2. KTH Royal Institute of Technology

Description

This repository contains the following resources,

  • Neo4j Dump: A Neo4j database dump of the Maven Central dependency graph, augmented with SBOM (Software Bill of Materials) data collected from Maven Central (goblin_maven_sbom_30_08_24.dump).
  • SBOM Collection: A collection of SBOMs gathered from Maven Central (sboms.tar.gz).

These resources were created using the Goblin framework as part of the MSR Mining challenge 2025

More details about the dataset can be found in this paper: Software Bills of Materials in Maven Central.

Files

Files (4.2 GB)

Name Size Download all
md5:c93fa8bf69d0a32af8dd3a3be844d9f6
3.6 GB Download
md5:169e6af573986418ce11bb74939406b8
590.2 MB Download

Additional details