This repository has been archived on 2026-02-15. You can view files and clone it. You cannot open issues or pull requests or push a commit.
Files
breakpilot-pwa/docs-site/services/ai-compliance-sdk/SBOM/index.html
BreakPilot Dev 557305db5d
Some checks failed
ci/woodpecker/push/integration Pipeline failed
ci/woodpecker/push/main Pipeline failed
CI/CD Pipeline / Go Tests (push) Has been cancelled
CI/CD Pipeline / Python Tests (push) Has been cancelled
CI/CD Pipeline / Website Tests (push) Has been cancelled
CI/CD Pipeline / Linting (push) Has been cancelled
CI/CD Pipeline / Security Scan (push) Has been cancelled
CI/CD Pipeline / Docker Build & Push (push) Has been cancelled
CI/CD Pipeline / Integration Tests (push) Has been cancelled
CI/CD Pipeline / Deploy to Staging (push) Has been cancelled
CI/CD Pipeline / Deploy to Production (push) Has been cancelled
CI/CD Pipeline / CI Summary (push) Has been cancelled
Security Scanning / Secret Scanning (push) Has been cancelled
Security Scanning / Dependency Vulnerability Scan (push) Has been cancelled
Security Scanning / Go Security Scan (push) Has been cancelled
Security Scanning / Python Security Scan (push) Has been cancelled
Security Scanning / Node.js Security Scan (push) Has been cancelled
Security Scanning / Docker Image Security (push) Has been cancelled
Security Scanning / Security Summary (push) Has been cancelled
Tests / Go Tests (push) Has been cancelled
Tests / Python Tests (push) Has been cancelled
Tests / Integration Tests (push) Has been cancelled
Tests / Go Lint (push) Has been cancelled
Tests / Python Lint (push) Has been cancelled
Tests / Security Scan (push) Has been cancelled
Tests / All Checks Passed (push) Has been cancelled
feat: Add Academy, Whistleblower, Incidents SDK modules, pitch-deck, blog and CI/CD config
- Academy, Whistleblower, Incidents frontend pages with API proxies and types
- Vendor compliance API proxy route
- Go backend handlers and models for all new SDK modules
- Investor pitch-deck app with interactive slides
- Blog section with DSGVO, AI Act, NIS2, glossary articles
- MkDocs documentation site
- CI/CD pipelines (Woodpecker, GitHub Actions), security scanning config
- Planning and implementation documentation

Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
2026-02-13 21:12:16 +01:00

3178 lines
61 KiB
HTML

<!doctype html>
<html lang="de" class="no-js">
<head>
<meta charset="utf-8">
<meta name="viewport" content="width=device-width,initial-scale=1">
<link rel="canonical" href="https://macmini:8008/services/ai-compliance-sdk/SBOM/">
<link rel="prev" href="../AUDITOR_DOCUMENTATION/">
<link rel="next" href="../../../api/backend-api/">
<link rel="icon" href="../../../assets/images/favicon.png">
<meta name="generator" content="mkdocs-1.6.1, mkdocs-material-9.7.1">
<title>SBOM - Breakpilot Dokumentation</title>
<link rel="stylesheet" href="../../../assets/stylesheets/main.484c7ddc.min.css">
<link rel="stylesheet" href="../../../assets/stylesheets/palette.ab4e12ef.min.css">
<link rel="preconnect" href="https://fonts.gstatic.com" crossorigin>
<link rel="stylesheet" href="https://fonts.googleapis.com/css?family=Roboto:300,300i,400,400i,700,700i%7CRoboto+Mono:400,400i,700,700i&display=fallback">
<style>:root{--md-text-font:"Roboto";--md-code-font:"Roboto Mono"}</style>
<script>__md_scope=new URL("../../..",location),__md_hash=e=>[...e].reduce(((e,_)=>(e<<5)-e+_.charCodeAt(0)),0),__md_get=(e,_=localStorage,t=__md_scope)=>JSON.parse(_.getItem(t.pathname+"."+e)),__md_set=(e,_,t=localStorage,a=__md_scope)=>{try{t.setItem(a.pathname+"."+e,JSON.stringify(_))}catch(e){}}</script>
</head>
<body dir="ltr" data-md-color-scheme="default" data-md-color-primary="teal" data-md-color-accent="indigo">
<input class="md-toggle" data-md-toggle="drawer" type="checkbox" id="__drawer" autocomplete="off">
<input class="md-toggle" data-md-toggle="search" type="checkbox" id="__search" autocomplete="off">
<label class="md-overlay" for="__drawer"></label>
<div data-md-component="skip">
<a href="#ai-compliance-sdk-software-bill-of-materials-sbom" class="md-skip">
Zum Inhalt
</a>
</div>
<div data-md-component="announce">
</div>
<header class="md-header" data-md-component="header">
<nav class="md-header__inner md-grid" aria-label="Kopfzeile">
<a href="../../.." title="Breakpilot Dokumentation" class="md-header__button md-logo" aria-label="Breakpilot Dokumentation" data-md-component="logo">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M12 8a3 3 0 0 0 3-3 3 3 0 0 0-3-3 3 3 0 0 0-3 3 3 3 0 0 0 3 3m0 3.54C9.64 9.35 6.5 8 3 8v11c3.5 0 6.64 1.35 9 3.54 2.36-2.19 5.5-3.54 9-3.54V8c-3.5 0-6.64 1.35-9 3.54"/></svg>
</a>
<label class="md-header__button md-icon" for="__drawer">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M3 6h18v2H3zm0 5h18v2H3zm0 5h18v2H3z"/></svg>
</label>
<div class="md-header__title" data-md-component="header-title">
<div class="md-header__ellipsis">
<div class="md-header__topic">
<span class="md-ellipsis">
Breakpilot Dokumentation
</span>
</div>
<div class="md-header__topic" data-md-component="header-topic">
<span class="md-ellipsis">
SBOM
</span>
</div>
</div>
</div>
<form class="md-header__option" data-md-component="palette">
<input class="md-option" data-md-color-media="" data-md-color-scheme="default" data-md-color-primary="teal" data-md-color-accent="indigo" aria-label="Dark Mode aktivieren" type="radio" name="__palette" id="__palette_0">
<label class="md-header__button md-icon" title="Dark Mode aktivieren" for="__palette_1" hidden>
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M12 8a4 4 0 0 0-4 4 4 4 0 0 0 4 4 4 4 0 0 0 4-4 4 4 0 0 0-4-4m0 10a6 6 0 0 1-6-6 6 6 0 0 1 6-6 6 6 0 0 1 6 6 6 6 0 0 1-6 6m8-9.31V4h-4.69L12 .69 8.69 4H4v4.69L.69 12 4 15.31V20h4.69L12 23.31 15.31 20H20v-4.69L23.31 12z"/></svg>
</label>
<input class="md-option" data-md-color-media="" data-md-color-scheme="slate" data-md-color-primary="teal" data-md-color-accent="indigo" aria-label="Light Mode aktivieren" type="radio" name="__palette" id="__palette_1">
<label class="md-header__button md-icon" title="Light Mode aktivieren" for="__palette_0" hidden>
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M12 18c-.89 0-1.74-.2-2.5-.55C11.56 16.5 13 14.42 13 12s-1.44-4.5-3.5-5.45C10.26 6.2 11.11 6 12 6a6 6 0 0 1 6 6 6 6 0 0 1-6 6m8-9.31V4h-4.69L12 .69 8.69 4H4v4.69L.69 12 4 15.31V20h4.69L12 23.31 15.31 20H20v-4.69L23.31 12z"/></svg>
</label>
</form>
<script>var palette=__md_get("__palette");if(palette&&palette.color){if("(prefers-color-scheme)"===palette.color.media){var media=matchMedia("(prefers-color-scheme: light)"),input=document.querySelector(media.matches?"[data-md-color-media='(prefers-color-scheme: light)']":"[data-md-color-media='(prefers-color-scheme: dark)']");palette.color.media=input.getAttribute("data-md-color-media"),palette.color.scheme=input.getAttribute("data-md-color-scheme"),palette.color.primary=input.getAttribute("data-md-color-primary"),palette.color.accent=input.getAttribute("data-md-color-accent")}for(var[key,value]of Object.entries(palette.color))document.body.setAttribute("data-md-color-"+key,value)}</script>
<label class="md-header__button md-icon" for="__search">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M9.5 3A6.5 6.5 0 0 1 16 9.5c0 1.61-.59 3.09-1.56 4.23l.27.27h.79l5 5-1.5 1.5-5-5v-.79l-.27-.27A6.52 6.52 0 0 1 9.5 16 6.5 6.5 0 0 1 3 9.5 6.5 6.5 0 0 1 9.5 3m0 2C7 5 5 7 5 9.5S7 14 9.5 14 14 12 14 9.5 12 5 9.5 5"/></svg>
</label>
<div class="md-search" data-md-component="search" role="dialog">
<label class="md-search__overlay" for="__search"></label>
<div class="md-search__inner" role="search">
<form class="md-search__form" name="search">
<input type="text" class="md-search__input" name="query" aria-label="Suche" placeholder="Suche" autocapitalize="off" autocorrect="off" autocomplete="off" spellcheck="false" data-md-component="search-query" required>
<label class="md-search__icon md-icon" for="__search">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M9.5 3A6.5 6.5 0 0 1 16 9.5c0 1.61-.59 3.09-1.56 4.23l.27.27h.79l5 5-1.5 1.5-5-5v-.79l-.27-.27A6.52 6.52 0 0 1 9.5 16 6.5 6.5 0 0 1 3 9.5 6.5 6.5 0 0 1 9.5 3m0 2C7 5 5 7 5 9.5S7 14 9.5 14 14 12 14 9.5 12 5 9.5 5"/></svg>
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M20 11v2H8l5.5 5.5-1.42 1.42L4.16 12l7.92-7.92L13.5 5.5 8 11z"/></svg>
</label>
<nav class="md-search__options" aria-label="Suche">
<button type="reset" class="md-search__icon md-icon" title="Zurücksetzen" aria-label="Zurücksetzen" tabindex="-1">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M19 6.41 17.59 5 12 10.59 6.41 5 5 6.41 10.59 12 5 17.59 6.41 19 12 13.41 17.59 19 19 17.59 13.41 12z"/></svg>
</button>
</nav>
<div class="md-search__suggest" data-md-component="search-suggest"></div>
</form>
<div class="md-search__output">
<div class="md-search__scrollwrap" tabindex="0" data-md-scrollfix>
<div class="md-search-result" data-md-component="search-result">
<div class="md-search-result__meta">
Suche wird initialisiert
</div>
<ol class="md-search-result__list" role="presentation"></ol>
</div>
</div>
</div>
</div>
</div>
</nav>
</header>
<div class="md-container" data-md-component="container">
<nav class="md-tabs" aria-label="Hauptnavigation" data-md-component="tabs">
<div class="md-grid">
<ul class="md-tabs__list">
<li class="md-tabs__item">
<a href="../../.." class="md-tabs__link">
Start
</a>
</li>
<li class="md-tabs__item">
<a href="../../../getting-started/environment-setup/" class="md-tabs__link">
Erste Schritte
</a>
</li>
<li class="md-tabs__item">
<a href="../../../architecture/system-architecture/" class="md-tabs__link">
Architektur
</a>
</li>
<li class="md-tabs__item md-tabs__item--active">
<a href="../../ki-daten-pipeline/" class="md-tabs__link">
Services
</a>
</li>
<li class="md-tabs__item">
<a href="../../../api/backend-api/" class="md-tabs__link">
API
</a>
</li>
<li class="md-tabs__item">
<a href="../../../development/testing/" class="md-tabs__link">
Entwicklung
</a>
</li>
</ul>
</div>
</nav>
<main class="md-main" data-md-component="main">
<div class="md-main__inner md-grid">
<div class="md-sidebar md-sidebar--primary" data-md-component="sidebar" data-md-type="navigation" >
<div class="md-sidebar__scrollwrap">
<div class="md-sidebar__inner">
<nav class="md-nav md-nav--primary md-nav--lifted" aria-label="Navigation" data-md-level="0">
<label class="md-nav__title" for="__drawer">
<a href="../../.." title="Breakpilot Dokumentation" class="md-nav__button md-logo" aria-label="Breakpilot Dokumentation" data-md-component="logo">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M12 8a3 3 0 0 0 3-3 3 3 0 0 0-3-3 3 3 0 0 0-3 3 3 3 0 0 0 3 3m0 3.54C9.64 9.35 6.5 8 3 8v11c3.5 0 6.64 1.35 9 3.54 2.36-2.19 5.5-3.54 9-3.54V8c-3.5 0-6.64 1.35-9 3.54"/></svg>
</a>
Breakpilot Dokumentation
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item">
<a href="../../.." class="md-nav__link">
<span class="md-ellipsis">
Start
</span>
</a>
</li>
<li class="md-nav__item md-nav__item--nested">
<input class="md-nav__toggle md-toggle md-toggle--indeterminate" type="checkbox" id="__nav_2" >
<label class="md-nav__link" for="__nav_2" id="__nav_2_label" tabindex="0">
<span class="md-ellipsis">
Erste Schritte
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<nav class="md-nav" data-md-level="1" aria-labelledby="__nav_2_label" aria-expanded="false">
<label class="md-nav__title" for="__nav_2">
<span class="md-nav__icon md-icon"></span>
Erste Schritte
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item">
<a href="../../../getting-started/environment-setup/" class="md-nav__link">
<span class="md-ellipsis">
Umgebung einrichten
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../../getting-started/mac-mini-setup/" class="md-nav__link">
<span class="md-ellipsis">
Mac Mini Setup
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item md-nav__item--nested">
<input class="md-nav__toggle md-toggle md-toggle--indeterminate" type="checkbox" id="__nav_3" >
<label class="md-nav__link" for="__nav_3" id="__nav_3_label" tabindex="0">
<span class="md-ellipsis">
Architektur
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<nav class="md-nav" data-md-level="1" aria-labelledby="__nav_3_label" aria-expanded="false">
<label class="md-nav__title" for="__nav_3">
<span class="md-nav__icon md-icon"></span>
Architektur
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item">
<a href="../../../architecture/system-architecture/" class="md-nav__link">
<span class="md-ellipsis">
Systemuebersicht
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../../architecture/auth-system/" class="md-nav__link">
<span class="md-ellipsis">
Auth-System
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../../architecture/mail-rbac-architecture/" class="md-nav__link">
<span class="md-ellipsis">
Mail-RBAC
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../../architecture/multi-agent/" class="md-nav__link">
<span class="md-ellipsis">
Multi-Agent
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../../architecture/secrets-management/" class="md-nav__link">
<span class="md-ellipsis">
Secrets Management
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../../architecture/devsecops/" class="md-nav__link">
<span class="md-ellipsis">
DevSecOps
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../../architecture/sdk-protection/" class="md-nav__link">
<span class="md-ellipsis">
SDK Protection
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../../architecture/environments/" class="md-nav__link">
<span class="md-ellipsis">
Environments
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../../architecture/zeugnis-system/" class="md-nav__link">
<span class="md-ellipsis">
Zeugnis-System
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item md-nav__item--active md-nav__item--section md-nav__item--nested">
<input class="md-nav__toggle md-toggle " type="checkbox" id="__nav_4" checked>
<label class="md-nav__link" for="__nav_4" id="__nav_4_label" tabindex="">
<span class="md-ellipsis">
Services
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<nav class="md-nav" data-md-level="1" aria-labelledby="__nav_4_label" aria-expanded="true">
<label class="md-nav__title" for="__nav_4">
<span class="md-nav__icon md-icon"></span>
Services
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item md-nav__item--section md-nav__item--nested">
<input class="md-nav__toggle md-toggle md-toggle--indeterminate" type="checkbox" id="__nav_4_1" >
<label class="md-nav__link" for="__nav_4_1" id="__nav_4_1_label" tabindex="">
<span class="md-ellipsis">
KI-Daten-Pipeline
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<nav class="md-nav" data-md-level="2" aria-labelledby="__nav_4_1_label" aria-expanded="false">
<label class="md-nav__title" for="__nav_4_1">
<span class="md-nav__icon md-icon"></span>
KI-Daten-Pipeline
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item">
<a href="../../ki-daten-pipeline/" class="md-nav__link">
<span class="md-ellipsis">
Uebersicht
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../ki-daten-pipeline/architecture/" class="md-nav__link">
<span class="md-ellipsis">
Architektur
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item md-nav__item--section md-nav__item--nested">
<input class="md-nav__toggle md-toggle md-toggle--indeterminate" type="checkbox" id="__nav_4_2" >
<label class="md-nav__link" for="__nav_4_2" id="__nav_4_2_label" tabindex="">
<span class="md-ellipsis">
Klausur-Service
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<nav class="md-nav" data-md-level="2" aria-labelledby="__nav_4_2_label" aria-expanded="false">
<label class="md-nav__title" for="__nav_4_2">
<span class="md-nav__icon md-icon"></span>
Klausur-Service
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item">
<a href="../../klausur-service/" class="md-nav__link">
<span class="md-ellipsis">
Uebersicht
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../klausur-service/byoeh-system-erklaerung/" class="md-nav__link">
<span class="md-ellipsis">
BYOEH Systemerklaerung
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../klausur-service/BYOEH-Architecture/" class="md-nav__link">
<span class="md-ellipsis">
BYOEH Architektur
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../klausur-service/BYOEH-Developer-Guide/" class="md-nav__link">
<span class="md-ellipsis">
BYOEH Developer Guide
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../klausur-service/NiBiS-Ingestion-Pipeline/" class="md-nav__link">
<span class="md-ellipsis">
NiBiS Pipeline
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../klausur-service/OCR-Labeling-Spec/" class="md-nav__link">
<span class="md-ellipsis">
OCR Labeling
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../klausur-service/OCR-Compare/" class="md-nav__link">
<span class="md-ellipsis">
OCR Compare
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../klausur-service/RAG-Admin-Spec/" class="md-nav__link">
<span class="md-ellipsis">
RAG Admin
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../klausur-service/Worksheet-Editor-Architecture/" class="md-nav__link">
<span class="md-ellipsis">
Worksheet Editor
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="../../voice-service/" class="md-nav__link">
<span class="md-ellipsis">
Voice-Service
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../agent-core/" class="md-nav__link">
<span class="md-ellipsis">
Agent-Core
</span>
</a>
</li>
<li class="md-nav__item md-nav__item--active md-nav__item--section md-nav__item--nested">
<input class="md-nav__toggle md-toggle " type="checkbox" id="__nav_4_5" checked>
<label class="md-nav__link" for="__nav_4_5" id="__nav_4_5_label" tabindex="">
<span class="md-ellipsis">
AI-Compliance-SDK
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<nav class="md-nav" data-md-level="2" aria-labelledby="__nav_4_5_label" aria-expanded="true">
<label class="md-nav__title" for="__nav_4_5">
<span class="md-nav__icon md-icon"></span>
AI-Compliance-SDK
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item">
<a href="../" class="md-nav__link">
<span class="md-ellipsis">
Uebersicht
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../ARCHITECTURE/" class="md-nav__link">
<span class="md-ellipsis">
Architektur
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../DEVELOPER/" class="md-nav__link">
<span class="md-ellipsis">
Developer Guide
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../AUDITOR_DOCUMENTATION/" class="md-nav__link">
<span class="md-ellipsis">
Auditor Dokumentation
</span>
</a>
</li>
<li class="md-nav__item md-nav__item--active">
<input class="md-nav__toggle md-toggle" type="checkbox" id="__toc">
<label class="md-nav__link md-nav__link--active" for="__toc">
<span class="md-ellipsis">
SBOM
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<a href="./" class="md-nav__link md-nav__link--active">
<span class="md-ellipsis">
SBOM
</span>
</a>
<nav class="md-nav md-nav--secondary" aria-label="Inhaltsverzeichnis">
<label class="md-nav__title" for="__toc">
<span class="md-nav__icon md-icon"></span>
Inhaltsverzeichnis
</label>
<ul class="md-nav__list" data-md-component="toc" data-md-scrollfix>
<li class="md-nav__item">
<a href="#zusammenfassung" class="md-nav__link">
<span class="md-ellipsis">
Zusammenfassung
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#direkte-abhangigkeiten" class="md-nav__link">
<span class="md-ellipsis">
Direkte Abhängigkeiten
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#indirekte-abhangigkeiten-transitive" class="md-nav__link">
<span class="md-ellipsis">
Indirekte Abhängigkeiten (Transitive)
</span>
</a>
<nav class="md-nav" aria-label="Indirekte Abhängigkeiten (Transitive)">
<ul class="md-nav__list">
<li class="md-nav__item">
<a href="#json-serialisierung" class="md-nav__link">
<span class="md-ellipsis">
JSON / Serialisierung
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#web-framework-gin-okosystem" class="md-nav__link">
<span class="md-ellipsis">
Web Framework (Gin-Ökosystem)
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#datenbank-postgresql" class="md-nav__link">
<span class="md-ellipsis">
Datenbank (PostgreSQL)
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#excel-verarbeitung" class="md-nav__link">
<span class="md-ellipsis">
Excel-Verarbeitung
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#pdf-generierung" class="md-nav__link">
<span class="md-ellipsis">
PDF-Generierung
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#utilities" class="md-nav__link">
<span class="md-ellipsis">
Utilities
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#go-standardbibliothek-erweiterungen" class="md-nav__link">
<span class="md-ellipsis">
Go Standardbibliothek Erweiterungen
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#protokoll-bibliotheken" class="md-nav__link">
<span class="md-ellipsis">
Protokoll-Bibliotheken
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="#lizenz-ubersicht" class="md-nav__link">
<span class="md-ellipsis">
Lizenz-Übersicht
</span>
</a>
<nav class="md-nav" aria-label="Lizenz-Übersicht">
<ul class="md-nav__list">
<li class="md-nav__item">
<a href="#keine-problematischen-lizenzen" class="md-nav__link">
<span class="md-ellipsis">
Keine problematischen Lizenzen!
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="#eigene-komponenten-keine-externen-abhangigkeiten" class="md-nav__link">
<span class="md-ellipsis">
Eigene Komponenten (Keine externen Abhängigkeiten)
</span>
</a>
<nav class="md-nav" aria-label="Eigene Komponenten (Keine externen Abhängigkeiten)">
<ul class="md-nav__list">
<li class="md-nav__item">
<a href="#policy-dateien-reine-yamljson" class="md-nav__link">
<span class="md-ellipsis">
Policy-Dateien (Reine YAML/JSON)
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="#compliance-erklarung" class="md-nav__link">
<span class="md-ellipsis">
Compliance-Erklärung
</span>
</a>
<nav class="md-nav" aria-label="Compliance-Erklärung">
<ul class="md-nav__list">
<li class="md-nav__item">
<a href="#fur-kommerzielle-nutzung-geeignet-ja" class="md-nav__link">
<span class="md-ellipsis">
Für kommerzielle Nutzung geeignet: ✅ JA
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#keine-copyleft-lizenzen" class="md-nav__link">
<span class="md-ellipsis">
Keine Copyleft-Lizenzen
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#empfohlene-manahmen" class="md-nav__link">
<span class="md-ellipsis">
Empfohlene Maßnahmen
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="#generierung-des-sbom" class="md-nav__link">
<span class="md-ellipsis">
Generierung des SBOM
</span>
</a>
</li>
</ul>
</nav>
</li>
</ul>
</nav>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item md-nav__item--nested">
<input class="md-nav__toggle md-toggle md-toggle--indeterminate" type="checkbox" id="__nav_5" >
<label class="md-nav__link" for="__nav_5" id="__nav_5_label" tabindex="0">
<span class="md-ellipsis">
API
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<nav class="md-nav" data-md-level="1" aria-labelledby="__nav_5_label" aria-expanded="false">
<label class="md-nav__title" for="__nav_5">
<span class="md-nav__icon md-icon"></span>
API
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item">
<a href="../../../api/backend-api/" class="md-nav__link">
<span class="md-ellipsis">
Backend API
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item md-nav__item--nested">
<input class="md-nav__toggle md-toggle md-toggle--indeterminate" type="checkbox" id="__nav_6" >
<label class="md-nav__link" for="__nav_6" id="__nav_6_label" tabindex="0">
<span class="md-ellipsis">
Entwicklung
</span>
<span class="md-nav__icon md-icon"></span>
</label>
<nav class="md-nav" data-md-level="1" aria-labelledby="__nav_6_label" aria-expanded="false">
<label class="md-nav__title" for="__nav_6">
<span class="md-nav__icon md-icon"></span>
Entwicklung
</label>
<ul class="md-nav__list" data-md-scrollfix>
<li class="md-nav__item">
<a href="../../../development/testing/" class="md-nav__link">
<span class="md-ellipsis">
Testing
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../../development/documentation/" class="md-nav__link">
<span class="md-ellipsis">
Dokumentation
</span>
</a>
</li>
<li class="md-nav__item">
<a href="../../../development/ci-cd-pipeline/" class="md-nav__link">
<span class="md-ellipsis">
CI/CD Pipeline
</span>
</a>
</li>
</ul>
</nav>
</li>
</ul>
</nav>
</div>
</div>
</div>
<div class="md-sidebar md-sidebar--secondary" data-md-component="sidebar" data-md-type="toc" >
<div class="md-sidebar__scrollwrap">
<div class="md-sidebar__inner">
<nav class="md-nav md-nav--secondary" aria-label="Inhaltsverzeichnis">
<label class="md-nav__title" for="__toc">
<span class="md-nav__icon md-icon"></span>
Inhaltsverzeichnis
</label>
<ul class="md-nav__list" data-md-component="toc" data-md-scrollfix>
<li class="md-nav__item">
<a href="#zusammenfassung" class="md-nav__link">
<span class="md-ellipsis">
Zusammenfassung
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#direkte-abhangigkeiten" class="md-nav__link">
<span class="md-ellipsis">
Direkte Abhängigkeiten
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#indirekte-abhangigkeiten-transitive" class="md-nav__link">
<span class="md-ellipsis">
Indirekte Abhängigkeiten (Transitive)
</span>
</a>
<nav class="md-nav" aria-label="Indirekte Abhängigkeiten (Transitive)">
<ul class="md-nav__list">
<li class="md-nav__item">
<a href="#json-serialisierung" class="md-nav__link">
<span class="md-ellipsis">
JSON / Serialisierung
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#web-framework-gin-okosystem" class="md-nav__link">
<span class="md-ellipsis">
Web Framework (Gin-Ökosystem)
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#datenbank-postgresql" class="md-nav__link">
<span class="md-ellipsis">
Datenbank (PostgreSQL)
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#excel-verarbeitung" class="md-nav__link">
<span class="md-ellipsis">
Excel-Verarbeitung
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#pdf-generierung" class="md-nav__link">
<span class="md-ellipsis">
PDF-Generierung
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#utilities" class="md-nav__link">
<span class="md-ellipsis">
Utilities
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#go-standardbibliothek-erweiterungen" class="md-nav__link">
<span class="md-ellipsis">
Go Standardbibliothek Erweiterungen
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#protokoll-bibliotheken" class="md-nav__link">
<span class="md-ellipsis">
Protokoll-Bibliotheken
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="#lizenz-ubersicht" class="md-nav__link">
<span class="md-ellipsis">
Lizenz-Übersicht
</span>
</a>
<nav class="md-nav" aria-label="Lizenz-Übersicht">
<ul class="md-nav__list">
<li class="md-nav__item">
<a href="#keine-problematischen-lizenzen" class="md-nav__link">
<span class="md-ellipsis">
Keine problematischen Lizenzen!
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="#eigene-komponenten-keine-externen-abhangigkeiten" class="md-nav__link">
<span class="md-ellipsis">
Eigene Komponenten (Keine externen Abhängigkeiten)
</span>
</a>
<nav class="md-nav" aria-label="Eigene Komponenten (Keine externen Abhängigkeiten)">
<ul class="md-nav__list">
<li class="md-nav__item">
<a href="#policy-dateien-reine-yamljson" class="md-nav__link">
<span class="md-ellipsis">
Policy-Dateien (Reine YAML/JSON)
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="#compliance-erklarung" class="md-nav__link">
<span class="md-ellipsis">
Compliance-Erklärung
</span>
</a>
<nav class="md-nav" aria-label="Compliance-Erklärung">
<ul class="md-nav__list">
<li class="md-nav__item">
<a href="#fur-kommerzielle-nutzung-geeignet-ja" class="md-nav__link">
<span class="md-ellipsis">
Für kommerzielle Nutzung geeignet: ✅ JA
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#keine-copyleft-lizenzen" class="md-nav__link">
<span class="md-ellipsis">
Keine Copyleft-Lizenzen
</span>
</a>
</li>
<li class="md-nav__item">
<a href="#empfohlene-manahmen" class="md-nav__link">
<span class="md-ellipsis">
Empfohlene Maßnahmen
</span>
</a>
</li>
</ul>
</nav>
</li>
<li class="md-nav__item">
<a href="#generierung-des-sbom" class="md-nav__link">
<span class="md-ellipsis">
Generierung des SBOM
</span>
</a>
</li>
</ul>
</nav>
</div>
</div>
</div>
<div class="md-content" data-md-component="content">
<article class="md-content__inner md-typeset">
<h1 id="ai-compliance-sdk-software-bill-of-materials-sbom">AI Compliance SDK - Software Bill of Materials (SBOM)<a class="headerlink" href="#ai-compliance-sdk-software-bill-of-materials-sbom" title="Permanent link">&para;</a></h1>
<p><strong>Erstellt:</strong> 2026-01-29
<strong>Go-Version:</strong> 1.24.0</p>
<hr />
<h2 id="zusammenfassung">Zusammenfassung<a class="headerlink" href="#zusammenfassung" title="Permanent link">&para;</a></h2>
<table>
<thead>
<tr>
<th>Kategorie</th>
<th>Anzahl</th>
<th>Status</th>
</tr>
</thead>
<tbody>
<tr>
<td>Direkte Abhängigkeiten</td>
<td>7</td>
<td>✅ Alle kommerziell nutzbar</td>
</tr>
<tr>
<td>Indirekte Abhängigkeiten</td>
<td>~45</td>
<td>✅ Alle kommerziell nutzbar</td>
</tr>
<tr>
<td><strong>Gesamt</strong></td>
<td>~52</td>
<td><strong>Alle Open Source, kommerziell nutzbar</strong></td>
</tr>
</tbody>
</table>
<hr />
<h2 id="direkte-abhangigkeiten">Direkte Abhängigkeiten<a class="headerlink" href="#direkte-abhangigkeiten" title="Permanent link">&para;</a></h2>
<table>
<thead>
<tr>
<th>Package</th>
<th>Version</th>
<th>Lizenz</th>
<th>Kommerziell nutzbar</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>github.com/gin-gonic/gin</code></td>
<td>v1.10.1</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/gin-contrib/cors</code></td>
<td>v1.7.6</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/google/uuid</code></td>
<td>v1.6.0</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/jackc/pgx/v5</code></td>
<td>v5.5.3</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/joho/godotenv</code></td>
<td>v1.5.1</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/xuri/excelize/v2</code></td>
<td>v2.9.1</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>gopkg.in/yaml.v3</code></td>
<td>v3.0.1</td>
<td><strong>MIT / Apache-2.0</strong></td>
<td>✅ Ja</td>
</tr>
</tbody>
</table>
<hr />
<h2 id="indirekte-abhangigkeiten-transitive">Indirekte Abhängigkeiten (Transitive)<a class="headerlink" href="#indirekte-abhangigkeiten-transitive" title="Permanent link">&para;</a></h2>
<h3 id="json-serialisierung">JSON / Serialisierung<a class="headerlink" href="#json-serialisierung" title="Permanent link">&para;</a></h3>
<table>
<thead>
<tr>
<th>Package</th>
<th>Version</th>
<th>Lizenz</th>
<th>Kommerziell nutzbar</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>github.com/bytedance/sonic</code></td>
<td>v1.13.3</td>
<td><strong>Apache-2.0</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/goccy/go-json</code></td>
<td>v0.10.5</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/json-iterator/go</code></td>
<td>v1.1.12</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/pelletier/go-toml/v2</code></td>
<td>v2.2.4</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>gopkg.in/yaml.v3</code></td>
<td>v3.0.1</td>
<td><strong>MIT / Apache-2.0</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/ugorji/go/codec</code></td>
<td>v1.3.0</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
</tbody>
</table>
<h3 id="web-framework-gin-okosystem">Web Framework (Gin-Ökosystem)<a class="headerlink" href="#web-framework-gin-okosystem" title="Permanent link">&para;</a></h3>
<table>
<thead>
<tr>
<th>Package</th>
<th>Version</th>
<th>Lizenz</th>
<th>Kommerziell nutzbar</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>github.com/gin-contrib/sse</code></td>
<td>v1.1.0</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/go-playground/validator/v10</code></td>
<td>v10.26.0</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/go-playground/locales</code></td>
<td>v0.14.1</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/go-playground/universal-translator</code></td>
<td>v0.18.1</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/leodido/go-urn</code></td>
<td>v1.4.0</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
</tbody>
</table>
<h3 id="datenbank-postgresql">Datenbank (PostgreSQL)<a class="headerlink" href="#datenbank-postgresql" title="Permanent link">&para;</a></h3>
<table>
<thead>
<tr>
<th>Package</th>
<th>Version</th>
<th>Lizenz</th>
<th>Kommerziell nutzbar</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>github.com/jackc/pgpassfile</code></td>
<td>v1.0.0</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/jackc/pgservicefile</code></td>
<td>v0.0.0-...</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/jackc/puddle/v2</code></td>
<td>v2.2.1</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
</tbody>
</table>
<h3 id="excel-verarbeitung">Excel-Verarbeitung<a class="headerlink" href="#excel-verarbeitung" title="Permanent link">&para;</a></h3>
<table>
<thead>
<tr>
<th>Package</th>
<th>Version</th>
<th>Lizenz</th>
<th>Kommerziell nutzbar</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>github.com/xuri/excelize/v2</code></td>
<td>v2.9.1</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/xuri/efp</code></td>
<td>v0.0.1</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/xuri/nfp</code></td>
<td>v0.0.2-...</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/richardlehane/mscfb</code></td>
<td>v1.0.4</td>
<td><strong>Apache-2.0</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/richardlehane/msoleps</code></td>
<td>v1.0.4</td>
<td><strong>Apache-2.0</strong></td>
<td>✅ Ja</td>
</tr>
</tbody>
</table>
<h3 id="pdf-generierung">PDF-Generierung<a class="headerlink" href="#pdf-generierung" title="Permanent link">&para;</a></h3>
<table>
<thead>
<tr>
<th>Package</th>
<th>Version</th>
<th>Lizenz</th>
<th>Kommerziell nutzbar</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>github.com/jung-kurt/gofpdf</code></td>
<td>v1.16.2</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
</tbody>
</table>
<h3 id="utilities">Utilities<a class="headerlink" href="#utilities" title="Permanent link">&para;</a></h3>
<table>
<thead>
<tr>
<th>Package</th>
<th>Version</th>
<th>Lizenz</th>
<th>Kommerziell nutzbar</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>github.com/gabriel-vasile/mimetype</code></td>
<td>v1.4.9</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/mattn/go-isatty</code></td>
<td>v0.0.20</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/modern-go/concurrent</code></td>
<td>v0.0.0-...</td>
<td><strong>Apache-2.0</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/modern-go/reflect2</code></td>
<td>v1.0.2</td>
<td><strong>Apache-2.0</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/klauspost/cpuid/v2</code></td>
<td>v2.2.10</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/tiendc/go-deepcopy</code></td>
<td>v1.7.1</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/twitchyliquid64/golang-asm</code></td>
<td>v0.15.1</td>
<td><strong>MIT</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>github.com/cloudwego/base64x</code></td>
<td>v0.1.5</td>
<td><strong>Apache-2.0</strong></td>
<td>✅ Ja</td>
</tr>
</tbody>
</table>
<h3 id="go-standardbibliothek-erweiterungen">Go Standardbibliothek Erweiterungen<a class="headerlink" href="#go-standardbibliothek-erweiterungen" title="Permanent link">&para;</a></h3>
<table>
<thead>
<tr>
<th>Package</th>
<th>Version</th>
<th>Lizenz</th>
<th>Kommerziell nutzbar</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>golang.org/x/arch</code></td>
<td>v0.18.0</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>golang.org/x/crypto</code></td>
<td>v0.43.0</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>golang.org/x/net</code></td>
<td>v0.46.0</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>golang.org/x/sync</code></td>
<td>v0.17.0</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>golang.org/x/sys</code></td>
<td>v0.37.0</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
<tr>
<td><code>golang.org/x/text</code></td>
<td>v0.30.0</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
</tbody>
</table>
<h3 id="protokoll-bibliotheken">Protokoll-Bibliotheken<a class="headerlink" href="#protokoll-bibliotheken" title="Permanent link">&para;</a></h3>
<table>
<thead>
<tr>
<th>Package</th>
<th>Version</th>
<th>Lizenz</th>
<th>Kommerziell nutzbar</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>google.golang.org/protobuf</code></td>
<td>v1.36.6</td>
<td><strong>BSD-3-Clause</strong></td>
<td>✅ Ja</td>
</tr>
</tbody>
</table>
<hr />
<h2 id="lizenz-ubersicht">Lizenz-Übersicht<a class="headerlink" href="#lizenz-ubersicht" title="Permanent link">&para;</a></h2>
<table>
<thead>
<tr>
<th>Lizenz</th>
<th>Anzahl Packages</th>
<th>Kommerziell nutzbar</th>
<th>Copyleft</th>
</tr>
</thead>
<tbody>
<tr>
<td><strong>MIT</strong></td>
<td>~25</td>
<td>✅ Ja</td>
<td>❌ Nein</td>
</tr>
<tr>
<td><strong>Apache-2.0</strong></td>
<td>~8</td>
<td>✅ Ja</td>
<td>❌ Nein (schwach)</td>
</tr>
<tr>
<td><strong>BSD-3-Clause</strong></td>
<td>~12</td>
<td>✅ Ja</td>
<td>❌ Nein</td>
</tr>
<tr>
<td><strong>BSD-2-Clause</strong></td>
<td>0</td>
<td>✅ Ja</td>
<td>❌ Nein</td>
</tr>
</tbody>
</table>
<h3 id="keine-problematischen-lizenzen">Keine problematischen Lizenzen!<a class="headerlink" href="#keine-problematischen-lizenzen" title="Permanent link">&para;</a></h3>
<table>
<thead>
<tr>
<th>Lizenz</th>
<th>Status</th>
</tr>
</thead>
<tbody>
<tr>
<td>GPL-2.0</td>
<td><strong>Nicht verwendet</strong></td>
</tr>
<tr>
<td>GPL-3.0</td>
<td><strong>Nicht verwendet</strong></td>
</tr>
<tr>
<td>AGPL</td>
<td><strong>Nicht verwendet</strong></td>
</tr>
<tr>
<td>LGPL</td>
<td><strong>Nicht verwendet</strong></td>
</tr>
<tr>
<td>SSPL</td>
<td><strong>Nicht verwendet</strong></td>
</tr>
<tr>
<td>Commons Clause</td>
<td><strong>Nicht verwendet</strong></td>
</tr>
</tbody>
</table>
<hr />
<h2 id="eigene-komponenten-keine-externen-abhangigkeiten">Eigene Komponenten (Keine externen Abhängigkeiten)<a class="headerlink" href="#eigene-komponenten-keine-externen-abhangigkeiten" title="Permanent link">&para;</a></h2>
<p>Die folgenden Komponenten wurden im Rahmen des AI Compliance SDK entwickelt und haben <strong>keine zusätzlichen Abhängigkeiten</strong>:</p>
<table>
<thead>
<tr>
<th>Komponente</th>
<th>Dateien</th>
<th>Externe Deps</th>
</tr>
</thead>
<tbody>
<tr>
<td>Policy Engine</td>
<td><code>internal/ucca/policy_engine.go</code></td>
<td>Keine</td>
</tr>
<tr>
<td>License Policy Engine</td>
<td><code>internal/ucca/license_policy.go</code></td>
<td>Keine</td>
</tr>
<tr>
<td>Legal RAG</td>
<td><code>internal/ucca/legal_rag.go</code></td>
<td>Keine</td>
</tr>
<tr>
<td>Escalation System</td>
<td><code>internal/ucca/escalation_*.go</code></td>
<td>Keine</td>
</tr>
<tr>
<td>SLA Monitor</td>
<td><code>internal/ucca/sla_monitor.go</code></td>
<td>Keine</td>
</tr>
<tr>
<td>UCCA Handlers</td>
<td><code>internal/api/handlers/ucca_handlers.go</code></td>
<td>Gin (MIT)</td>
</tr>
<tr>
<td><strong>Obligations Framework</strong></td>
<td><code>internal/ucca/obligations_framework.go</code></td>
<td>Keine</td>
</tr>
<tr>
<td><strong>Obligations Registry</strong></td>
<td><code>internal/ucca/obligations_registry.go</code></td>
<td>Keine</td>
</tr>
<tr>
<td><strong>NIS2 Module</strong></td>
<td><code>internal/ucca/nis2_module.go</code></td>
<td>Keine</td>
</tr>
<tr>
<td><strong>DSGVO Module</strong></td>
<td><code>internal/ucca/dsgvo_module.go</code></td>
<td>Keine</td>
</tr>
<tr>
<td><strong>AI Act Module</strong></td>
<td><code>internal/ucca/ai_act_module.go</code></td>
<td>Keine</td>
</tr>
<tr>
<td><strong>PDF Export</strong></td>
<td><code>internal/ucca/pdf_export.go</code></td>
<td>gofpdf (MIT)</td>
</tr>
<tr>
<td><strong>Obligations Handlers</strong></td>
<td><code>internal/api/handlers/obligations_handlers.go</code></td>
<td>Gin (MIT)</td>
</tr>
<tr>
<td><strong>Funding Models</strong></td>
<td><code>internal/funding/models.go</code></td>
<td>Keine</td>
</tr>
<tr>
<td><strong>Funding Store</strong></td>
<td><code>internal/funding/store.go</code>, <code>postgres_store.go</code></td>
<td>pgx (MIT)</td>
</tr>
<tr>
<td><strong>Funding Export</strong></td>
<td><code>internal/funding/export.go</code></td>
<td>gofpdf (MIT), excelize (BSD-3)</td>
</tr>
<tr>
<td><strong>Funding Handlers</strong></td>
<td><code>internal/api/handlers/funding_handlers.go</code></td>
<td>Gin (MIT)</td>
</tr>
</tbody>
</table>
<h3 id="policy-dateien-reine-yamljson">Policy-Dateien (Reine YAML/JSON)<a class="headerlink" href="#policy-dateien-reine-yamljson" title="Permanent link">&para;</a></h3>
<table>
<thead>
<tr>
<th>Datei</th>
<th>Format</th>
<th>Abhängigkeiten</th>
</tr>
</thead>
<tbody>
<tr>
<td><code>ucca_policy_v1.yaml</code></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><code>wizard_schema_v1.yaml</code></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><code>controls_catalog.yaml</code></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><code>gap_mapping.yaml</code></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><code>licensed_content_policy.yaml</code></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><code>financial_regulations_policy.yaml</code></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><code>financial_regulations_corpus.yaml</code></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><code>scc_legal_corpus.yaml</code></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><strong><code>obligations/nis2_obligations.yaml</code></strong></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><strong><code>obligations/dsgvo_obligations.yaml</code></strong></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><strong><code>obligations/ai_act_obligations.yaml</code></strong></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><strong><code>funding/foerderantrag_wizard_v1.yaml</code></strong></td>
<td>YAML</td>
<td>Keine</td>
</tr>
<tr>
<td><strong><code>funding/bundesland_profiles.yaml</code></strong></td>
<td>YAML</td>
<td>Keine</td>
</tr>
</tbody>
</table>
<hr />
<h2 id="compliance-erklarung">Compliance-Erklärung<a class="headerlink" href="#compliance-erklarung" title="Permanent link">&para;</a></h2>
<h3 id="fur-kommerzielle-nutzung-geeignet-ja">Für kommerzielle Nutzung geeignet: ✅ JA<a class="headerlink" href="#fur-kommerzielle-nutzung-geeignet-ja" title="Permanent link">&para;</a></h3>
<p>Alle verwendeten Abhängigkeiten verwenden <strong>permissive Open-Source-Lizenzen</strong>:</p>
<ol>
<li>
<p><strong>MIT-Lizenz</strong>: Erlaubt kommerzielle Nutzung, Modifikation, Distribution. Nur Lizenzhinweis erforderlich.</p>
</li>
<li>
<p><strong>Apache-2.0-Lizenz</strong>: Erlaubt kommerzielle Nutzung, Modifikation, Distribution. Patentgewährung enthalten.</p>
</li>
<li>
<p><strong>BSD-3-Clause</strong>: Erlaubt kommerzielle Nutzung, Modifikation, Distribution. Nur Lizenzhinweis erforderlich.</p>
</li>
</ol>
<h3 id="keine-copyleft-lizenzen">Keine Copyleft-Lizenzen<a class="headerlink" href="#keine-copyleft-lizenzen" title="Permanent link">&para;</a></h3>
<p>Es werden <strong>keine</strong> Copyleft-Lizenzen (GPL, AGPL, LGPL) verwendet, die eine Offenlegung des eigenen Quellcodes erfordern würden.</p>
<h3 id="empfohlene-manahmen">Empfohlene Maßnahmen<a class="headerlink" href="#empfohlene-manahmen" title="Permanent link">&para;</a></h3>
<ol>
<li><strong>NOTICE-Datei pflegen</strong>: Alle Lizenztexte in einer NOTICE-Datei zusammenfassen</li>
<li><strong>Regelmäßige Updates</strong>: Abhängigkeiten auf bekannte Schwachstellen prüfen</li>
<li><strong>License-Scanner</strong>: Tool wie <code>go-licenses</code> oder <code>fossa</code> für automatisierte Prüfung</li>
</ol>
<hr />
<h2 id="generierung-des-sbom">Generierung des SBOM<a class="headerlink" href="#generierung-des-sbom" title="Permanent link">&para;</a></h2>
<div class="highlight"><pre><span></span><code><a id="__codelineno-0-1" name="__codelineno-0-1" href="#__codelineno-0-1"></a><span class="c1"># SBOM im SPDX-Format generieren</span>
<a id="__codelineno-0-2" name="__codelineno-0-2" href="#__codelineno-0-2"></a>go<span class="w"> </span>install<span class="w"> </span>github.com/spdx/tools-golang/cmd/spdx-tvwriter@latest
<a id="__codelineno-0-3" name="__codelineno-0-3" href="#__codelineno-0-3"></a>go<span class="w"> </span>mod<span class="w"> </span>download
<a id="__codelineno-0-4" name="__codelineno-0-4" href="#__codelineno-0-4"></a><span class="c1"># Manuell: SPDX-Dokument erstellen</span>
<a id="__codelineno-0-5" name="__codelineno-0-5" href="#__codelineno-0-5"></a>
<a id="__codelineno-0-6" name="__codelineno-0-6" href="#__codelineno-0-6"></a><span class="c1"># Alternativ: CycloneDX Format</span>
<a id="__codelineno-0-7" name="__codelineno-0-7" href="#__codelineno-0-7"></a>go<span class="w"> </span>install<span class="w"> </span>github.com/CycloneDX/cyclonedx-gomod/cmd/cyclonedx-gomod@latest
<a id="__codelineno-0-8" name="__codelineno-0-8" href="#__codelineno-0-8"></a>cyclonedx-gomod<span class="w"> </span>mod<span class="w"> </span>-output<span class="w"> </span>sbom.json
<a id="__codelineno-0-9" name="__codelineno-0-9" href="#__codelineno-0-9"></a>
<a id="__codelineno-0-10" name="__codelineno-0-10" href="#__codelineno-0-10"></a><span class="c1"># Lizenz-Prüfung</span>
<a id="__codelineno-0-11" name="__codelineno-0-11" href="#__codelineno-0-11"></a>go<span class="w"> </span>install<span class="w"> </span>github.com/google/go-licenses@latest
<a id="__codelineno-0-12" name="__codelineno-0-12" href="#__codelineno-0-12"></a>go-licenses<span class="w"> </span>csv<span class="w"> </span>github.com/breakpilot/ai-compliance-sdk/...
</code></pre></div>
<hr />
<p><em>Dokumentationsstand: 2026-01-29</em></p>
</article>
</div>
<script>var tabs=__md_get("__tabs");if(Array.isArray(tabs))e:for(var set of document.querySelectorAll(".tabbed-set")){var labels=set.querySelector(".tabbed-labels");for(var tab of tabs)for(var label of labels.getElementsByTagName("label"))if(label.innerText.trim()===tab){var input=document.getElementById(label.htmlFor);input.checked=!0;continue e}}</script>
<script>var target=document.getElementById(location.hash.slice(1));target&&target.name&&(target.checked=target.name.startsWith("__tabbed_"))</script>
</div>
<button type="button" class="md-top md-icon" data-md-component="top" hidden>
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 24 24"><path d="M13 20h-2V8l-5.5 5.5-1.42-1.42L12 4.16l7.92 7.92-1.42 1.42L13 8z"/></svg>
Zurück zum Seitenanfang
</button>
</main>
<footer class="md-footer">
<div class="md-footer-meta md-typeset">
<div class="md-footer-meta__inner md-grid">
<div class="md-copyright">
Made with
<a href="https://squidfunk.github.io/mkdocs-material/" target="_blank" rel="noopener">
Material for MkDocs
</a>
</div>
<div class="md-social">
<a href="http://macmini:3003/breakpilot/breakpilot-pwa" target="_blank" rel="noopener" title="macmini:3003" class="md-social__link">
<svg xmlns="http://www.w3.org/2000/svg" viewBox="0 0 512 512"><!--! Font Awesome Free 7.1.0 by @fontawesome - https://fontawesome.com License - https://fontawesome.com/license/free (Icons: CC BY 4.0, Fonts: SIL OFL 1.1, Code: MIT License) Copyright 2025 Fonticons, Inc.--><path d="M173.9 397.4c0 2-2.3 3.6-5.2 3.6-3.3.3-5.6-1.3-5.6-3.6 0-2 2.3-3.6 5.2-3.6 3-.3 5.6 1.3 5.6 3.6m-31.1-4.5c-.7 2 1.3 4.3 4.3 4.9 2.6 1 5.6 0 6.2-2s-1.3-4.3-4.3-5.2c-2.6-.7-5.5.3-6.2 2.3m44.2-1.7c-2.9.7-4.9 2.6-4.6 4.9.3 2 2.9 3.3 5.9 2.6 2.9-.7 4.9-2.6 4.6-4.6-.3-1.9-3-3.2-5.9-2.9M252.8 8C114.1 8 8 113.3 8 252c0 110.9 69.8 205.8 169.5 239.2 12.8 2.3 17.3-5.6 17.3-12.1 0-6.2-.3-40.4-.3-61.4 0 0-70 15-84.7-29.8 0 0-11.4-29.1-27.8-36.6 0 0-22.9-15.7 1.6-15.4 0 0 24.9 2 38.6 25.8 21.9 38.6 58.6 27.5 72.9 20.9 2.3-16 8.8-27.1 16-33.7-55.9-6.2-112.3-14.3-112.3-110.5 0-27.5 7.6-41.3 23.6-58.9-2.6-6.5-11.1-33.3 2.6-67.9 20.9-6.5 69 27 69 27 20-5.6 41.5-8.5 62.8-8.5s42.8 2.9 62.8 8.5c0 0 48.1-33.6 69-27 13.7 34.7 5.2 61.4 2.6 67.9 16 17.7 25.8 31.5 25.8 58.9 0 96.5-58.9 104.2-114.8 110.5 9.2 7.9 17 22.9 17 46.4 0 33.7-.3 75.4-.3 83.6 0 6.5 4.6 14.4 17.3 12.1C436.2 457.8 504 362.9 504 252 504 113.3 391.5 8 252.8 8M105.2 352.9c-1.3 1-1 3.3.7 5.2 1.6 1.6 3.9 2.3 5.2 1 1.3-1 1-3.3-.7-5.2-1.6-1.6-3.9-2.3-5.2-1m-10.8-8.1c-.7 1.3.3 2.9 2.3 3.9 1.6 1 3.6.7 4.3-.7.7-1.3-.3-2.9-2.3-3.9-2-.6-3.6-.3-4.3.7m32.4 35.6c-1.6 1.3-1 4.3 1.3 6.2 2.3 2.3 5.2 2.6 6.5 1 1.3-1.3.7-4.3-1.3-6.2-2.2-2.3-5.2-2.6-6.5-1m-11.4-14.7c-1.6 1-1.6 3.6 0 5.9s4.3 3.3 5.6 2.3c1.6-1.3 1.6-3.9 0-6.2-1.4-2.3-4-3.3-5.6-2"/></svg>
</a>
</div>
</div>
</div>
</footer>
</div>
<div class="md-dialog" data-md-component="dialog">
<div class="md-dialog__inner md-typeset"></div>
</div>
<script id="__config" type="application/json">{"annotate": null, "base": "../../..", "features": ["search.highlight", "search.suggest", "navigation.tabs", "navigation.sections", "navigation.expand", "navigation.top", "content.code.copy", "content.tabs.link", "toc.follow"], "search": "../../../assets/javascripts/workers/search.2c215733.min.js", "tags": null, "translations": {"clipboard.copied": "In Zwischenablage kopiert", "clipboard.copy": "In Zwischenablage kopieren", "search.result.more.one": "1 weiteres Suchergebnis auf dieser Seite", "search.result.more.other": "# weitere Suchergebnisse auf dieser Seite", "search.result.none": "Keine Suchergebnisse", "search.result.one": "1 Suchergebnis", "search.result.other": "# Suchergebnisse", "search.result.placeholder": "Suchbegriff eingeben", "search.result.term.missing": "Es fehlt", "select.version": "Version ausw\u00e4hlen"}, "version": null}</script>
<script src="../../../assets/javascripts/bundle.79ae519e.min.js"></script>
</body>
</html>