DEEPBOM

Effective 2026-09-13

Terms of use

Authorized artifacts

Use DEEPBOM only with artifacts and related evidence that you are authorized to inspect. You remain responsible for source licenses, confidentiality, export controls, and organizational policies governing those files.

Engineering evidence, not a verdict

DEEPBOM performs static inspection of supported serialized deployment artifacts. Its results do not establish measured runtime behavior, accuracy, safety, clinical validity, fitness for purpose, or compliance with any law, regulation, or standard. Reviewers must evaluate the stated evidence class, coverage, assumptions, and unresolved evidence.

No warranty

The open-source software is provided under the Apache License 2.0 and on an as-is basis. A successful audit means only that no covered artifact defect was observed by that version and configuration; it is not a guarantee that the artifact is defect-free.