SBOM Play is a browser-first, privacy-aware SBOM visualization and enrichment tool demonstrated at BlackHat Asia 2026 Arsenal. It extracts SBOMs from GitHub repositories, enriches them with osv.dev data, and analyses dependencies, vulnerabilities, license compliance, and author attribution across repositories and organizations — entirely client-side.