Commit Graph

  • 561ed50c2d
    chore: migrate syft to use the anchore fork of archiver without replace (#3516) Christopher Angelo Phillips 2024-12-10 13:33:24 -05:00
  • d77e78ea9d
    Make pre-release integration PRs (#3370) Alex Goodman 2024-12-10 12:14:11 -05:00
  • 0f9d2e5311
    chore(deps): bump github.com/docker/docker (#3512) dependabot[bot] 2024-12-10 10:49:17 -05:00
  • 0dc74a3c37
    chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.6.3 to 6.6.4 (#3513) dependabot[bot] 2024-12-10 10:49:05 -05:00
  • 37957b895e
    chore(deps): bump github/codeql-action from 3.27.6 to 3.27.7 (#3514) dependabot[bot] 2024-12-10 10:48:52 -05:00
  • d38efb0b7f
    chore(deps): update anchore dependencies (#3510) v1.18.0 Alex Goodman 2024-12-09 15:51:16 -05:00
  • f9e320c5b7
    fix: convert file paths for spdx formats from absolute to relative (#3509) Christopher Angelo Phillips 2024-12-09 13:02:54 -05:00
  • cd0900e758
    chore(deps): update CPE dictionary index (#3507) anchore-actions-token-generator[bot] 2024-12-09 09:54:52 -05:00
  • 064a9712ac
    chore(deps): update tools to latest versions (#3506) anchore-actions-token-generator[bot] 2024-12-09 09:54:48 -05:00
  • c43c9df1ba
    chore(deps): bump github.com/magiconair/properties from 1.8.7 to 1.8.9 (#3508) dependabot[bot] 2024-12-09 09:54:12 -05:00
  • 4015f40982
    chore(deps): bump actions/cache from 4.1.2 to 4.2.0 (#3503) dependabot[bot] 2024-12-06 15:29:44 -05:00
  • 340b5e17f0
    Add relationships for rust audit binary packages (#3500) Alex Goodman 2024-12-06 09:23:18 -05:00
  • 4adb56d2fe
    fix order of rust dependencies and support git sources in Cargo.lock dependencies (#3502) William Murphy 2024-12-06 08:38:36 -05:00
  • d3c9ce532d
    chore(deps): update tools to latest versions (#3501) anchore-actions-token-generator[bot] 2024-12-06 08:36:54 -05:00
  • 5e22251c86
    chore(deps): bump golang.org/x/net from 0.31.0 to 0.32.0 (#3499) dependabot[bot] 2024-12-05 11:36:33 -05:00
  • 02b7c959c7 redefine unknown dependency completeness enum note-dep-quality Alex Goodman 2024-12-05 09:47:02 -05:00
  • 25e5d555ef
    chore: add and document target for updating unit snapshots (#3498) William Murphy 2024-12-04 15:21:07 -05:00
  • 48190233f4
    fix: emit NOASSERTION for copyright text to fix SPDX 2.2 validation failure (#3495) Christopher Angelo Phillips 2024-12-04 14:58:36 -05:00
  • 3508e648af
    chore(deps): update tools to latest versions (#3496) anchore-actions-token-generator[bot] 2024-12-04 10:01:21 -05:00
  • 1af70d766d
    chore(deps): update tools to latest versions (#3487) anchore-actions-token-generator[bot] 2024-12-03 11:04:44 -05:00
  • 0c3fa82952
    chore(deps): bump github/codeql-action from 3.27.5 to 3.27.6 (#3494) dependabot[bot] 2024-12-03 11:04:28 -05:00
  • c3619422bb
    chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.6.2 to 6.6.3 (#3489) dependabot[bot] 2024-12-02 16:30:09 +00:00
  • 59e943385d
    feat: set max layer size (#3464) GGMU 2024-12-02 18:29:42 +02:00
  • 0e880e83e6
    chore(deps): update CPE dictionary index (#3491) anchore-actions-token-generator[bot] 2024-12-02 11:14:28 -05:00
  • 74d58024f6
    chore(deps): bump modernc.org/sqlite from 1.34.1 to 1.34.2 (#3492) dependabot[bot] 2024-12-02 10:47:33 -05:00
  • a0a62931c8
    chore(deps): bump github.com/saferwall/pe from 1.5.5 to 1.5.6 (#3493) dependabot[bot] 2024-12-02 10:47:21 -05:00
  • a320cf76a4
    chore(deps): update tools to latest versions (#3478) anchore-actions-token-generator[bot] 2024-11-27 10:17:54 -05:00
  • ec5f3169db
    chore(deps): update CPE dictionary index (#3479) anchore-actions-token-generator[bot] 2024-11-27 10:17:34 -05:00
  • bbc292ecc0
    chore(deps): bump github.com/stretchr/testify from 1.9.0 to 1.10.0 (#3480) dependabot[bot] 2024-11-27 10:17:19 -05:00
  • b8d3dd3039
    chore(deps): bump github.com/charmbracelet/bubbletea from 1.2.3 to 1.2.4 (#3482) dependabot[bot] 2024-11-27 10:17:10 -05:00
  • 9f1e91e72e
    chore(deps): update stereoscope to be5deed44b7c03fcbfa6f1f42fb67202d31636a9 (#3483) anchore-actions-token-generator[bot] 2024-11-27 10:17:00 -05:00
  • b64213109a rename mixed enum and fix golang Alex Goodman 2024-11-22 17:25:29 -05:00
  • 2118295f19
    fix: dart classifier for 2.x and ARM (#3475) witchcraze 2024-11-23 03:05:09 +09:00
  • 21df38798e
    Use file indexer directly when scanning with file source (#3333) Adam McClenaghan 2024-11-22 16:53:53 +00:00
  • 8abd97a5bf
    chore(deps): bump anchore/sbom-action from 0.17.7 to 0.17.8 (#3476) dependabot[bot] 2024-11-22 11:18:05 -05:00
  • 05c09fd73d
    chore(deps): bump github/codeql-action from 3.27.4 to 3.27.5 (#3473) dependabot[bot] 2024-11-21 15:14:27 -05:00
  • a8d4202d77
    chore(deps): update stereoscope to aa3a3ef4efe8d8759c9aa87261b405cc003bfc9a (#3472) v1.17.0 anchore-actions-token-generator[bot] 2024-11-21 14:28:51 +00:00
  • 19a30b9fd2
    chore(deps): bump github.com/charmbracelet/bubbletea from 1.2.2 to 1.2.3 (#3467) dependabot[bot] 2024-11-20 08:32:30 -05:00
  • e65fe243bf
    fix: bump clio to pull in logging fix (#3466) William Murphy 2024-11-19 14:56:53 -05:00
  • f4cad63da1
    3122 valid license url characters (#3449) Christopher Angelo Phillips 2024-11-19 10:34:58 -05:00
  • e7b65c2c58
    3030 license declared spdx correction (#3461) Christopher Angelo Phillips 2024-11-19 10:00:59 -05:00
  • 8aef0c908a
    chore(deps): update tools to latest versions (#3463) anchore-actions-token-generator[bot] 2024-11-19 09:36:46 -05:00
  • 35fa0cc454
    chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.6.1 to 6.6.2 (#3465) dependabot[bot] 2024-11-19 09:36:32 -05:00
  • 1c61e9cbff
    chore(deps): bump modernc.org/sqlite from 1.33.1 to 1.34.1 (#3460) dependabot[bot] 2024-11-18 09:33:08 -05:00
  • d91150edea
    chore(deps): update CPE dictionary index (#3453) anchore-actions-token-generator[bot] 2024-11-18 08:33:41 -05:00
  • 215ae2bbb9
    chore(deps): update tools to latest versions (#3454) anchore-actions-token-generator[bot] 2024-11-18 08:33:23 -05:00
  • 93d90cb10a
    chore(deps): update tools to latest versions (#3448) anchore-actions-token-generator[bot] 2024-11-17 12:32:11 -05:00
  • ad2abfabd1 update formatter and json schema Alex Goodman 2024-10-31 11:44:32 -04:00
  • 5b7ec60f8d add package dependency quality notes Alex Goodman 2024-10-29 13:48:04 -04:00
  • 70ef3f25df
    chore(deps): update tools to latest versions (#3444) anchore-actions-token-generator[bot] 2024-11-15 09:36:21 -05:00
  • e41f8dfa04
    chore(deps): bump github/codeql-action from 3.27.3 to 3.27.4 (#3446) dependabot[bot] 2024-11-15 09:35:59 -05:00
  • bc35345afb
    feat: emit dependency relationships found in Cargo.lock (#3443) William Murphy 2024-11-14 16:45:00 -05:00
  • 926486a7c3
    chore(deps): update stereoscope to aa3a3ef4efe8d8759c9aa87261b405cc003bfc9a (#3442) anchore-actions-token-generator[bot] 2024-11-14 13:13:04 -05:00
  • a15c5f61f4
    chore(deps): bump github/codeql-action from 3.27.2 to 3.27.3 (#3438) dependabot[bot] 2024-11-14 05:32:26 -05:00
  • 94dd634a97
    chore(deps): bump github.com/charmbracelet/bubbletea from 1.2.1 to 1.2.2 (#3439) dependabot[bot] 2024-11-14 05:31:39 -05:00
  • 5624d48e25
    chore(deps): bump github.com/saferwall/pe from 1.5.4 to 1.5.5 (#3440) dependabot[bot] 2024-11-14 05:31:21 -05:00
  • ac8be4ad41
    chore(deps): update tools to latest versions (#3413) anchore-actions-token-generator[bot] 2024-11-12 15:53:27 +00:00
  • abd6abe186
    chore(deps): bump github/codeql-action from 3.27.1 to 3.27.2 (#3436) dependabot[bot] 2024-11-12 13:50:25 +00:00
  • 51872403d1
    chore(deps): bump golang.org/x/mod from 0.21.0 to 0.22.0 (#3426) dependabot[bot] 2024-11-12 13:48:39 +00:00
  • 066aadb4d1
    update node classifier (#3419) witchcraze 2024-11-12 22:38:43 +09:00
  • e463206349
    chore(deps): update stereoscope to 120d9ea511e2f7a9887b443c52e66cd19bb80b43 (#3424) anchore-actions-token-generator[bot] 2024-11-12 08:37:14 -05:00
  • 7c6483f84a
    chore(deps): update CPE dictionary index (#3429) anchore-actions-token-generator[bot] 2024-11-12 08:36:41 -05:00
  • 013a2fe340
    chore(deps): bump github/codeql-action from 3.27.0 to 3.27.1 (#3431) dependabot[bot] 2024-11-12 08:36:01 -05:00
  • 6e7c198ae7
    chore(deps): bump golang.org/x/net from 0.30.0 to 0.31.0 (#3432) dependabot[bot] 2024-11-12 08:35:41 -05:00
  • 8a7da599fc
    chore(deps): bump github.com/charmbracelet/bubbletea from 1.1.2 to 1.2.1 (#3433) dependabot[bot] 2024-11-12 08:35:15 -05:00
  • b0bffef1a2
    restore log on ui teardown (#3427) Alex Goodman 2024-11-08 12:31:38 -05:00
  • 3c070e0ad9
    doc: Add official Syft logo license information (#3421) Alan Pope 2024-11-07 14:23:57 +00:00
  • defb08d120
    chore(deps): bump anchore/sbom-action from 0.17.6 to 0.17.7 (#3418) dependabot[bot] 2024-11-06 10:41:45 -05:00
  • 16eedd81ec
    chore: build release sbom from go.mod (#3417) Keith Zantow 2024-11-05 09:51:23 -05:00
  • 8a41d77250
    chore: prevent file resolver from bubbling errors in binary cataloger (#3410) v1.16.0 Christopher Angelo Phillips 2024-11-04 15:23:27 -05:00
  • eb56f2e4bb
    chore(deps): update stereoscope to cbd43fb4e5d348fe680066ee6329385fd6a4f827 (#3411) anchore-actions-token-generator[bot] 2024-11-04 10:20:27 -05:00
  • 849e325408
    chore(deps): update CPE dictionary index (#3414) anchore-actions-token-generator[bot] 2024-11-04 10:13:22 -05:00
  • 203df65a65
    chore(deps): bump github.com/adrg/xdg from 0.5.2 to 0.5.3 (#3408) dependabot[bot] 2024-11-01 11:43:54 -04:00
  • 2c70090d10
    chore(deps): bump github.com/charmbracelet/lipgloss from 0.13.1 to 1.0.0 (#3409) dependabot[bot] 2024-11-01 11:43:47 -04:00
  • 8f179e6961
    chore(deps): update stereoscope to 2ce1e520983b1c21d5150d7fae2b39e8e5ab9063 (#3405) anchore-actions-token-generator[bot] 2024-11-01 11:43:39 -04:00
  • 6a1e3f32fe
    Issue #3143 – fixed format conversion docs link (#3407) Artemii 2024-11-01 16:43:00 +01:00
  • fcf1350a0e
    feat: support dependencies and purl for Native Image SBOMs (#3399) Joel Rudsberg 2024-10-31 17:12:54 +01:00
  • 9302e20d62
    chore(deps): update stereoscope to 9c92fe30492ffeba14ed2e23ad1fd923341dda4f (#3398) anchore-actions-token-generator[bot] 2024-10-31 10:22:14 -04:00
  • a55b71d4ef
    feat: exclude devDependencies from package-lock.json parsing (#3371) Nathan Voss 2024-10-30 09:02:27 -07:00
  • df3998b4f1
    chore(deps): bump github.com/adrg/xdg from 0.5.1 to 0.5.2 (#3394) dependabot[bot] 2024-10-29 16:32:14 +00:00
  • 9dc9be645a
    chore(deps): bump anchore/sbom-action from 0.17.5 to 0.17.6 (#3393) dependabot[bot] 2024-10-29 10:07:28 -04:00
  • 798c18a698
    fix: stack overflow in spyingIoReadCloser (#3392) Keith Zantow 2024-10-29 08:23:57 -04:00
  • 1118ac4ace
    fix: bad pom files may cause infinite loop (#3391) Keith Zantow 2024-10-28 18:09:04 -04:00
  • 55cc1877ef
    chore(deps): update stereoscope to bcc40c6817524718277256d6b774ce643f98640a (#3388) v1.15.0 anchore-actions-token-generator[bot] 2024-10-28 19:48:04 +00:00
  • 367c699585
    chore(deps): bump actions/setup-go from 5.0.2 to 5.1.0 (#3384) dependabot[bot] 2024-10-28 14:09:45 -04:00
  • 46445ff29f
    chore(deps): bump github.com/charmbracelet/bubbletea from 1.1.1 to 1.1.2 (#3385) dependabot[bot] 2024-10-28 14:08:44 -04:00
  • 5faa6d34d5
    chore(deps): update tools to latest versions (#3383) anchore-actions-token-generator[bot] 2024-10-28 14:08:14 -04:00
  • c7c036660c
    chore(deps): update CPE dictionary index (#3387) anchore-actions-token-generator[bot] 2024-10-28 08:03:08 -04:00
  • a0c62da747
    chore(deps): bump actions/checkout from 4.2.1 to 4.2.2 (#3380) dependabot[bot] 2024-10-24 10:35:47 -04:00
  • 759b898df5
    feat: multi-level configuration and profiles (#3337) Keith Zantow 2024-10-23 12:15:59 -04:00
  • a00533c836
    feat: Java dependency graph information (#3363) Keith Zantow 2024-10-23 11:17:34 -04:00
  • b505317e10
    Expanded dpkg cataloger globs (#3373) Nathan Voss 2024-10-23 07:59:28 -07:00
  • 06d300e662
    Enable cargo-auditable-binary-cataloger for files/directories (#3376) Ariel Miculas-Trif 2024-10-23 17:55:04 +03:00
  • 80333d39e3
    chore(deps): bump github/codeql-action from 3.26.13 to 3.27.0 (#3374) dependabot[bot] 2024-10-23 10:47:12 -04:00
  • 11335466b6
    chore(deps): bump github.com/charmbracelet/lipgloss (#3375) dependabot[bot] 2024-10-23 10:46:52 -04:00
  • 260d80974f
    chore(deps): update stereoscope to 6db3c175f1f836e552b01ee70e5d5528cc04bce4 (#3362) anchore-actions-token-generator[bot] 2024-10-22 12:23:29 -04:00
  • fc524a0565
    chore(deps): bump actions/cache from 4.1.1 to 4.1.2 (#3364) dependabot[bot] 2024-10-22 12:23:13 -04:00
  • b5cde1304b
    chore(deps): bump anchore/sbom-action from 0.17.4 to 0.17.5 (#3365) dependabot[bot] 2024-10-22 12:22:27 -04:00
  • 6a2898e00d
    chore(deps): bump github.com/go-git/go-billy/v5 from 5.5.0 to 5.6.0 (#3367) dependabot[bot] 2024-10-22 12:22:19 -04:00
  • c5fba2d0e4
    rename testing license scanner v1.13.1-performance-fix Alex Goodman 2024-10-21 12:08:17 -04:00