ONEKEY logo

ONEKEY

Commercial · SBOM analysis

ONEKEY analyses device firmware to generate and validate SBOMs, then manages the vulnerabilities in them over the product's life. It is aimed squarely at manufacturers of connected devices, with compliance mapping to the Cyber Resilience Act, IEC 62443-4-2, ETSI EN 303 645 and UNECE R155. The company was previously IoT Inspector.

Key facts

VendorONEKEY
LicenceCommercial
Company founded2020
DoesSBOM generation, SBOM validation, Firmware analysis, Vulnerability management, Compliance mapping
ReadsFirmware images
FormatsCycloneDX, SPDX
Websitewww.onekey.com

Sources

Checked 21 Sept 2026. Spotted something out of date? Tell us.

Other SBOM analysis tools

Need the product tested as well? See Cyber Resilience Act compliance testing providers.