Tags: secure-sdl/syft
Tags
Use SBOM descriptor version (anchore#1011) * Use SBOM descriptor version Signed-off-by: Jonas Xavier <[email protected]> * Update tests Signed-off-by: Jonas Xavier <[email protected]> * CycloneDX extract tools metadata in decoding stage Signed-off-by: Jonas Xavier <[email protected]> * add descriptor to spdx tag-value test Signed-off-by: Jonas Xavier <[email protected]> * remove comment Signed-off-by: Jonas Xavier <[email protected]>
Malformed licenses field in package json warn not skip (anchore#1004) * Malformed licenses field in package json warn not skip Signed-off-by: houdini91 <[email protected]> * liceneses failed warn fix Signed-off-by: houdini91 <[email protected]> * package.json malformed licenses unitest Signed-off-by: houdini91 <[email protected]>
add integration tests for validating CycloneDX output using cyclonedx… …-cli (anchore#1000)
Fix potential race condition during event subscription (anchore#993)
Rename syft-id to package-id (anchore#970) Co-authored-by: Christopher Phillips <[email protected]>
Update GitHub format package_url and correlator (anchore#961)
Update spdx22json to only take uppercase checksum algorithm (anchore#946 )
Update write permissions and log into ghcr.io for release (anchore#942)
PreviousNext