Commit Graph

  • 059cfd6730
    update release token from readonly to write token (#2735) Hung Nguyen 2024-03-26 09:06:55 -04:00
  • f4e18961b9
    Adding the ability to retrieve remote licenses from package.lock (#2708) v1.1.0 Colm O hEigeartaigh 2024-03-21 17:20:04 +00:00
  • 0d5ebed74a
    dont include labels for dependabot ecosystems (#2720) Alex Goodman 2024-03-21 12:16:01 -04:00
  • 8f7305ef78
    chore(deps): bump fountainhead/action-wait-for-check from 1.1.0 to 1.2.0 (#2717) dependabot[bot] 2024-03-21 12:15:30 -04:00
  • c199b80b88
    chore(deps): update tools to latest versions (#2726) anchore-actions-token-generator[bot] 2024-03-21 12:15:06 -04:00
  • df547020ef
    chore(deps): bump github/codeql-action from 3.24.7 to 3.24.8 (#2725) dependabot[bot] 2024-03-21 12:14:51 -04:00
  • 37094c9751
    chore(deps): bump actions/cache from 4.0.1 to 4.0.2 (#2728) dependabot[bot] 2024-03-21 12:14:43 -04:00
  • c83556e7b6
    chore(deps): bump github.com/docker/docker (#2730) dependabot[bot] 2024-03-21 12:14:32 -04:00
  • 3ac1cd7a9f
    updating credentials to scoped permissions (#2722) Hung Nguyen 2024-03-20 17:35:07 -04:00
  • 96d2b4a368
    chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.5.4 to 6.5.5 (#2718) dependabot[bot] 2024-03-15 10:33:11 -04:00
  • 807de976c4
    chore(deps): bump github.com/google/go-containerregistry (#2719) dependabot[bot] 2024-03-15 10:32:51 -04:00
  • cf17bd69b2
    Add detection for Oracle GraalVM (#2705) Laurent Goderre 2024-03-14 11:40:07 -04:00
  • 1c8d29d577
    chore(deps): bump docker/login-action from 3.0.0 to 3.1.0 (#2714) dependabot[bot] 2024-03-14 11:16:16 -04:00
  • 6a2517b5d2
    Add ELF binary package cataloger (#2396) brian-ebarb 2024-03-14 10:16:03 -05:00
  • 7ab6fc3fe4
    chore(deps): bump modernc.org/sqlite from 1.29.3 to 1.29.5 (#2710) dependabot[bot] 2024-03-14 09:58:56 -04:00
  • 2051a62ded
    chore(deps): bump github/codeql-action from 3.24.6 to 3.24.7 (#2711) dependabot[bot] 2024-03-14 09:58:42 -04:00
  • 78ad3d648f [wip] prototype binary relationships add-elf-binary-relationships Alex Goodman 2024-03-13 18:09:19 -04:00
  • 1b3e57c264 remove unreleated swift change Alex Goodman 2024-03-13 17:09:08 -04:00
  • ad7edba2a5 remove dead test code Alex Goodman 2024-03-13 17:07:52 -04:00
  • e51d4bcda1 less verbose logging Alex Goodman 2024-03-13 17:05:56 -04:00
  • d8113b5f07 bump JSON schema to v16.0.6 + expand test fixtures Alex Goodman 2024-03-13 15:51:03 -04:00
  • a35f64c971 feat: elf_binary_package_cataloger Brian Ebarb 2024-03-13 14:34:06 -05:00
  • 5534c38d0f
    chore(deps): bump peter-evans/create-pull-request from 6.0.1 to 6.0.2 (#2712) dependabot[bot] 2024-03-13 13:47:47 -04:00
  • 47fc909700
    Show binary exports, entrypoint, and imports (#2626) Alex Goodman 2024-03-12 18:04:02 -04:00
  • 2e2a9377ea
    chore(deps): bump actions/checkout from 4.1.1 to 4.1.2 (#2703) dependabot[bot] 2024-03-12 13:18:44 -04:00
  • 4ca79c7626
    chore(deps): bump github.com/knqyf263/go-rpmdb (#2701) dependabot[bot] 2024-03-11 11:48:05 -04:00
  • 3743f5ae53
    chore: reduce duplicate case SwiftPkg (#2696) guangwu 2024-03-08 02:15:31 +08:00
  • ebb9d4edb6
    chore: remove deprecated os.SEEK_SET os.SEEK_CUR (#2693) guangwu 2024-03-08 02:10:48 +08:00
  • e2a9d891b2
    chore(deps): bump github.com/docker/docker (#2698) dependabot[bot] 2024-03-07 13:00:14 -05:00
  • 5b09c154bb
    chore(deps): bump modernc.org/sqlite from 1.29.2 to 1.29.3 (#2699) dependabot[bot] 2024-03-07 13:00:02 -05:00
  • 1b121ac3f4
    chore(deps): bump golang.org/x/net from 0.21.0 to 0.22.0 (#2689) v1.0.1 dependabot[bot] 2024-03-06 14:25:56 -05:00
  • f9e09aef19
    docs: add simplest example from regsitry (#2691) Keith Zantow 2024-03-06 14:25:37 -05:00
  • d2ac672f8f
    chore(deps): update tools to latest versions (#2688) anchore-actions-token-generator[bot] 2024-03-06 14:25:13 -05:00
  • 5e3fde04a5
    chore(deps): bump anchore/sbom-action from 0.15.8 to 0.15.9 (#2694) dependabot[bot] 2024-03-06 14:24:56 -05:00
  • e214645394
    chore(deps): bump github.com/charmbracelet/lipgloss from 0.9.1 to 0.10.0 (#2695) dependabot[bot] 2024-03-06 14:24:46 -05:00
  • 5bd1cd5c13
    chore(deps): bump golang.org/x/mod from 0.15.0 to 0.16.0 (#2690) dependabot[bot] 2024-03-05 10:15:18 -05:00
  • fe4f17286f
    chore(deps): bump github.com/stretchr/testify from 1.8.4 to 1.9.0 (#2684) dependabot[bot] 2024-03-01 13:51:18 -05:00
  • d7e58964ef
    chore(deps): bump actions/cache from 4.0.0 to 4.0.1 (#2685) dependabot[bot] 2024-03-01 13:50:49 -05:00
  • 59d54d6154
    chore(deps): bump github/codeql-action from 3.24.5 to 3.24.6 (#2686) dependabot[bot] 2024-03-01 13:50:34 -05:00
  • 4d0dd02d5a
    chore: update stereoscope (#2683) Christopher Angelo Phillips 2024-02-29 13:32:18 -05:00
  • 356f7c92b4
    fix: match OpenSSL letter releases (#2682) v1.0.0 Harm Weites 2024-02-29 15:39:23 +01:00
  • 6377465440
    Mark duplicated rows in table output (#2679) Alex Goodman 2024-02-29 09:33:00 -05:00
  • 3ad91f2678
    fix: trim path from deps.json in portable way (#2674) William Murphy 2024-02-29 09:31:55 -05:00
  • 5ef83fdc79
    chore(deps): update tools to latest versions (#2680) anchore-actions-token-generator[bot] 2024-02-29 09:27:37 -05:00
  • 06ff1a353a
    enforce breaking change bump major version (#2635) Alex Goodman 2024-02-28 15:48:20 -05:00
  • 326ec57d4a
    docs: fix incorrect flag name in readme (#2677) Keith Zantow 2024-02-28 15:39:43 -05:00
  • 48e5672a87
    Consider filesystem types for mount points when ignoring system paths (#2675) Alex Goodman 2024-02-28 15:37:17 -05:00
  • 63171b55dd
    fix: stop emitting bus events on go mod events (#2673) William Murphy 2024-02-28 14:14:46 -05:00
  • acc473fc30
    chore(deps): bump peter-evans/create-pull-request from 6.0.0 to 6.0.1 (#2676) dependabot[bot] 2024-02-28 09:31:29 -05:00
  • a978966cad
    feat: add --from flag, refactor source providers (#2610) Keith Zantow 2024-02-27 16:44:37 -05:00
  • 928511ea0f
    chore(deps): bump modernc.org/sqlite from 1.29.1 to 1.29.2 (#2671) v0.105.1 dependabot[bot] 2024-02-26 10:57:06 -05:00
  • 33b72ccbf8
    chore(deps): bump github/codeql-action from 3.24.4 to 3.24.5 (#2666) dependabot[bot] 2024-02-23 14:10:26 +00:00
  • 2995c3c4fd
    fix: SPDX tag value version selector (#2665) Keith Zantow 2024-02-23 08:22:10 -05:00
  • 170ac079d4
    fix(install): return appropriate error codes (#2664) Stefan Hacker 2024-02-23 01:34:51 +01:00
  • 108a5dae9b
    chore: update busybox image for acceptance tests (#2663) Keith Zantow 2024-02-22 15:32:17 -05:00
  • cdf1e0bacb
    chore(deps): bump github/codeql-action from 3.24.3 to 3.24.4 (#2662) dependabot[bot] 2024-02-22 16:50:53 +00:00
  • 0c3b8ca4ed
    rename binary classifier cataloger name (#2643) Alex Goodman 2024-02-20 13:52:11 -05:00
  • 434b6ad506
    add cataloger selection example (#2646) Alex Goodman 2024-02-20 11:44:42 -05:00
  • 3598cb4f8f
    chore(deps): update tools to latest versions (#2651) anchore-actions-token-generator[bot] 2024-02-20 11:39:54 -05:00
  • 8260bce057
    chore(deps): update stereoscope to 6171ee21e1d584f6bde910f354d126c9cd70deaa (#2655) anchore-actions-token-generator[bot] 2024-02-17 10:22:56 -05:00
  • 578ac9cf2d
    chore(deps): bump github/codeql-action from 3.24.1 to 3.24.3 (#2649) dependabot[bot] 2024-02-15 09:13:29 -05:00
  • a1b23bd57d
    add syft version used to SBOM tool info by default (#2647) Alex Goodman 2024-02-14 16:57:31 -05:00
  • 65cadda486
    Survive indexing dead symlinks (#2645) v0.105.0 Alex Goodman 2024-02-14 16:06:22 -05:00
  • a909e3cec9
    fix considering base path when ignoring known bad unix paths (#2644) Alex Goodman 2024-02-14 15:57:38 -05:00
  • 8e62ff9831
    test for field conventions in json schema (#2642) Alex Goodman 2024-02-14 11:11:53 -05:00
  • 96ee2db875
    feat: Add Wordpress cataloger (#2218) Alexandr Hacicheant 2024-02-14 18:03:25 +02:00
  • 98b700e83c
    rename binary cataloger to be more unique (#2633) Alex Goodman 2024-02-14 11:01:55 -05:00
  • 9803db2949
    fix: update runner size to use larger HD for codeql (#2641) Christopher Angelo Phillips 2024-02-14 10:31:05 -05:00
  • 17ef243956
    chore(deps): update tools to latest versions (#2616) anchore-actions-token-generator[bot] 2024-02-14 14:59:49 +00:00
  • 3ac7369068
    chore(deps): bump github/codeql-action from 3.24.0 to 3.24.1 (#2638) dependabot[bot] 2024-02-14 09:21:21 -05:00
  • 4d4efa4963
    chore(deps): bump dawidd6/action-homebrew-bump-formula (#2639) dependabot[bot] 2024-02-14 09:21:05 -05:00
  • a7da2270c7
    chore(deps): bump modernc.org/sqlite from 1.29.0 to 1.29.1 (#2640) dependabot[bot] 2024-02-14 09:20:54 -05:00
  • 6288530835
    fix: add BOMRef to CycloneDX OS Component (#2634) Keith Zantow 2024-02-14 08:18:16 -05:00
  • 25d3c06962
    chore(deps): bump github.com/saferwall/pe from 1.5.0 to 1.5.2 (#2629) dependabot[bot] 2024-02-13 11:23:35 -05:00
  • 79b71be0ee
    chore(deps): bump modernc.org/sqlite from 1.28.0 to 1.29.0 (#2630) dependabot[bot] 2024-02-13 11:23:22 -05:00
  • 25ae7bf55f
    fix getting union reader for sif images (#2631) Alex Goodman 2024-02-13 10:12:31 -05:00
  • e72dec8e9e
    chore(deps): bump golang.org/x/net from 0.20.0 to 0.21.0 (#2607) dependabot[bot] 2024-02-12 14:31:44 -05:00
  • 3398e72066
    chore(deps): bump github.com/saferwall/pe from 1.4.8 to 1.5.0 (#2625) dependabot[bot] 2024-02-12 14:31:31 -05:00
  • d26a5c4d30
    fix: ensure version output to stdout (#2621) Keith Zantow 2024-02-09 15:59:25 -05:00
  • 84576b93e1
    Guess go main module version based on binary contents (#2608) Alex Goodman 2024-02-09 14:52:42 -05:00
  • 737c4e44c5
    chore(deps): update stereoscope to 681f6715b0e35686d6e6f40bce109176de1ee274 (#2617) anchore-actions-token-generator[bot] 2024-02-09 14:06:28 -05:00
  • 7444a9f976
    fix readme around templating options (#2612) Alex Goodman 2024-02-09 13:44:41 -05:00
  • 8683cba081
    suppress executable parsing issues (#2614) Alex Goodman 2024-02-09 12:13:58 -05:00
  • c0f43e5e2d
    chore: update license list, cpe dictionary (#2620) Christopher Angelo Phillips 2024-02-09 11:31:42 -05:00
  • 397cf210de
    chore(deps): update tools to latest versions (#2606) anchore-actions-token-generator[bot] 2024-02-08 10:39:18 -05:00
  • bd0cb916df
    fix: incorrect conversion between integer types (#2605) v0.104.0 Christopher Angelo Phillips 2024-02-07 15:41:00 -05:00
  • da31eed637
    chore(deps): bump golang.org/x/mod from 0.14.0 to 0.15.0 (#2602) dependabot[bot] 2024-02-07 11:31:49 -05:00
  • 704155eb22
    chore(deps): bump github.com/docker/docker (#2601) dependabot[bot] 2024-02-07 11:31:41 -05:00
  • ce67927a98
    Fix: unmarshal key values in Java, Go, and Conan metadata (#2603) William Murphy 2024-02-07 11:26:23 -05:00
  • bbd34f61fd
    fix(dotnet): prefer portable executable product version when semantically greater than file version (#2600) Weston Steimel 2024-02-07 13:28:37 +00:00
  • c61f59e7b7
    Finalize Conan v2 support (#2587) Alex Goodman 2024-02-07 08:24:02 -05:00
  • 00d6269e3c
    chore(deps): update tools to latest versions (#2595) anchore-actions-token-generator[bot] 2024-02-06 10:48:01 -05:00
  • 0bc5971085
    chore(deps): bump actions/upload-artifact from 4.3.0 to 4.3.1 (#2597) dependabot[bot] 2024-02-06 10:44:51 -05:00
  • 91d7a8a992
    chore(deps): update stereoscope to bfa15e446f061bda7f68305d2d6240b053f17e0c (#2589) anchore-actions-token-generator[bot] 2024-02-05 10:27:12 -05:00
  • 05fa8ba4e9
    chore(deps): bump actions/cache from 3.3.2 to 4.0.0 (#2592) dependabot[bot] 2024-02-05 10:26:55 -05:00
  • e813a427b9
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.0 to 0.5.2 (#2591) dependabot[bot] 2024-02-05 10:26:39 -05:00
  • 0618b2cb35
    chore(deps): bump github/codeql-action from 3.23.2 to 3.24.0 (#2593) dependabot[bot] 2024-02-05 09:46:22 -05:00
  • fd3844853a
    labeler should ignore latest version (#2588) Alex Goodman 2024-02-02 18:08:15 -05:00
  • b735106848
    chore: copy latest schema to stable path for easier diff (#2586) William Murphy 2024-02-02 17:09:28 -05:00
  • 98de2e2f62
    Adding metadata fields when parsing yarn.lock and poetry.lock (#2350) Asi Greenholts 2024-02-02 21:53:42 +02:00