Commit Graph

  • d7e58964ef
    chore(deps): bump actions/cache from 4.0.0 to 4.0.1 (#2685) dependabot[bot] 2024-03-01 13:50:49 -05:00
  • 59d54d6154
    chore(deps): bump github/codeql-action from 3.24.5 to 3.24.6 (#2686) dependabot[bot] 2024-03-01 13:50:34 -05:00
  • 4d0dd02d5a
    chore: update stereoscope (#2683) Christopher Angelo Phillips 2024-02-29 13:32:18 -05:00
  • 356f7c92b4
    fix: match OpenSSL letter releases (#2682) v1.0.0 Harm Weites 2024-02-29 15:39:23 +01:00
  • 6377465440
    Mark duplicated rows in table output (#2679) Alex Goodman 2024-02-29 09:33:00 -05:00
  • 3ad91f2678
    fix: trim path from deps.json in portable way (#2674) William Murphy 2024-02-29 09:31:55 -05:00
  • 5ef83fdc79
    chore(deps): update tools to latest versions (#2680) anchore-actions-token-generator[bot] 2024-02-29 09:27:37 -05:00
  • 06ff1a353a
    enforce breaking change bump major version (#2635) Alex Goodman 2024-02-28 15:48:20 -05:00
  • 326ec57d4a
    docs: fix incorrect flag name in readme (#2677) Keith Zantow 2024-02-28 15:39:43 -05:00
  • 48e5672a87
    Consider filesystem types for mount points when ignoring system paths (#2675) Alex Goodman 2024-02-28 15:37:17 -05:00
  • 63171b55dd
    fix: stop emitting bus events on go mod events (#2673) William Murphy 2024-02-28 14:14:46 -05:00
  • acc473fc30
    chore(deps): bump peter-evans/create-pull-request from 6.0.0 to 6.0.1 (#2676) dependabot[bot] 2024-02-28 09:31:29 -05:00
  • a978966cad
    feat: add --from flag, refactor source providers (#2610) Keith Zantow 2024-02-27 16:44:37 -05:00
  • 928511ea0f
    chore(deps): bump modernc.org/sqlite from 1.29.1 to 1.29.2 (#2671) v0.105.1 dependabot[bot] 2024-02-26 10:57:06 -05:00
  • 33b72ccbf8
    chore(deps): bump github/codeql-action from 3.24.4 to 3.24.5 (#2666) dependabot[bot] 2024-02-23 14:10:26 +00:00
  • 2995c3c4fd
    fix: SPDX tag value version selector (#2665) Keith Zantow 2024-02-23 08:22:10 -05:00
  • 170ac079d4
    fix(install): return appropriate error codes (#2664) Stefan Hacker 2024-02-23 01:34:51 +01:00
  • 108a5dae9b
    chore: update busybox image for acceptance tests (#2663) Keith Zantow 2024-02-22 15:32:17 -05:00
  • cdf1e0bacb
    chore(deps): bump github/codeql-action from 3.24.3 to 3.24.4 (#2662) dependabot[bot] 2024-02-22 16:50:53 +00:00
  • 0c3b8ca4ed
    rename binary classifier cataloger name (#2643) Alex Goodman 2024-02-20 13:52:11 -05:00
  • 434b6ad506
    add cataloger selection example (#2646) Alex Goodman 2024-02-20 11:44:42 -05:00
  • 3598cb4f8f
    chore(deps): update tools to latest versions (#2651) anchore-actions-token-generator[bot] 2024-02-20 11:39:54 -05:00
  • 8260bce057
    chore(deps): update stereoscope to 6171ee21e1d584f6bde910f354d126c9cd70deaa (#2655) anchore-actions-token-generator[bot] 2024-02-17 10:22:56 -05:00
  • 578ac9cf2d
    chore(deps): bump github/codeql-action from 3.24.1 to 3.24.3 (#2649) dependabot[bot] 2024-02-15 09:13:29 -05:00
  • a1b23bd57d
    add syft version used to SBOM tool info by default (#2647) Alex Goodman 2024-02-14 16:57:31 -05:00
  • 65cadda486
    Survive indexing dead symlinks (#2645) v0.105.0 Alex Goodman 2024-02-14 16:06:22 -05:00
  • a909e3cec9
    fix considering base path when ignoring known bad unix paths (#2644) Alex Goodman 2024-02-14 15:57:38 -05:00
  • 8e62ff9831
    test for field conventions in json schema (#2642) Alex Goodman 2024-02-14 11:11:53 -05:00
  • 96ee2db875
    feat: Add Wordpress cataloger (#2218) Alexandr Hacicheant 2024-02-14 18:03:25 +02:00
  • 98b700e83c
    rename binary cataloger to be more unique (#2633) Alex Goodman 2024-02-14 11:01:55 -05:00
  • 9803db2949
    fix: update runner size to use larger HD for codeql (#2641) Christopher Angelo Phillips 2024-02-14 10:31:05 -05:00
  • 17ef243956
    chore(deps): update tools to latest versions (#2616) anchore-actions-token-generator[bot] 2024-02-14 14:59:49 +00:00
  • 3ac7369068
    chore(deps): bump github/codeql-action from 3.24.0 to 3.24.1 (#2638) dependabot[bot] 2024-02-14 09:21:21 -05:00
  • 4d4efa4963
    chore(deps): bump dawidd6/action-homebrew-bump-formula (#2639) dependabot[bot] 2024-02-14 09:21:05 -05:00
  • a7da2270c7
    chore(deps): bump modernc.org/sqlite from 1.29.0 to 1.29.1 (#2640) dependabot[bot] 2024-02-14 09:20:54 -05:00
  • 6288530835
    fix: add BOMRef to CycloneDX OS Component (#2634) Keith Zantow 2024-02-14 08:18:16 -05:00
  • 25d3c06962
    chore(deps): bump github.com/saferwall/pe from 1.5.0 to 1.5.2 (#2629) dependabot[bot] 2024-02-13 11:23:35 -05:00
  • 79b71be0ee
    chore(deps): bump modernc.org/sqlite from 1.28.0 to 1.29.0 (#2630) dependabot[bot] 2024-02-13 11:23:22 -05:00
  • 25ae7bf55f
    fix getting union reader for sif images (#2631) Alex Goodman 2024-02-13 10:12:31 -05:00
  • e72dec8e9e
    chore(deps): bump golang.org/x/net from 0.20.0 to 0.21.0 (#2607) dependabot[bot] 2024-02-12 14:31:44 -05:00
  • 3398e72066
    chore(deps): bump github.com/saferwall/pe from 1.4.8 to 1.5.0 (#2625) dependabot[bot] 2024-02-12 14:31:31 -05:00
  • d26a5c4d30
    fix: ensure version output to stdout (#2621) Keith Zantow 2024-02-09 15:59:25 -05:00
  • 84576b93e1
    Guess go main module version based on binary contents (#2608) Alex Goodman 2024-02-09 14:52:42 -05:00
  • 737c4e44c5
    chore(deps): update stereoscope to 681f6715b0e35686d6e6f40bce109176de1ee274 (#2617) anchore-actions-token-generator[bot] 2024-02-09 14:06:28 -05:00
  • 7444a9f976
    fix readme around templating options (#2612) Alex Goodman 2024-02-09 13:44:41 -05:00
  • 8683cba081
    suppress executable parsing issues (#2614) Alex Goodman 2024-02-09 12:13:58 -05:00
  • c0f43e5e2d
    chore: update license list, cpe dictionary (#2620) Christopher Angelo Phillips 2024-02-09 11:31:42 -05:00
  • 397cf210de
    chore(deps): update tools to latest versions (#2606) anchore-actions-token-generator[bot] 2024-02-08 10:39:18 -05:00
  • bd0cb916df
    fix: incorrect conversion between integer types (#2605) v0.104.0 Christopher Angelo Phillips 2024-02-07 15:41:00 -05:00
  • da31eed637
    chore(deps): bump golang.org/x/mod from 0.14.0 to 0.15.0 (#2602) dependabot[bot] 2024-02-07 11:31:49 -05:00
  • 704155eb22
    chore(deps): bump github.com/docker/docker (#2601) dependabot[bot] 2024-02-07 11:31:41 -05:00
  • ce67927a98
    Fix: unmarshal key values in Java, Go, and Conan metadata (#2603) William Murphy 2024-02-07 11:26:23 -05:00
  • bbd34f61fd
    fix(dotnet): prefer portable executable product version when semantically greater than file version (#2600) Weston Steimel 2024-02-07 13:28:37 +00:00
  • c61f59e7b7
    Finalize Conan v2 support (#2587) Alex Goodman 2024-02-07 08:24:02 -05:00
  • 00d6269e3c
    chore(deps): update tools to latest versions (#2595) anchore-actions-token-generator[bot] 2024-02-06 10:48:01 -05:00
  • 0bc5971085
    chore(deps): bump actions/upload-artifact from 4.3.0 to 4.3.1 (#2597) dependabot[bot] 2024-02-06 10:44:51 -05:00
  • 91d7a8a992
    chore(deps): update stereoscope to bfa15e446f061bda7f68305d2d6240b053f17e0c (#2589) anchore-actions-token-generator[bot] 2024-02-05 10:27:12 -05:00
  • 05fa8ba4e9
    chore(deps): bump actions/cache from 3.3.2 to 4.0.0 (#2592) dependabot[bot] 2024-02-05 10:26:55 -05:00
  • e813a427b9
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.0 to 0.5.2 (#2591) dependabot[bot] 2024-02-05 10:26:39 -05:00
  • 0618b2cb35
    chore(deps): bump github/codeql-action from 3.23.2 to 3.24.0 (#2593) dependabot[bot] 2024-02-05 09:46:22 -05:00
  • fd3844853a
    labeler should ignore latest version (#2588) Alex Goodman 2024-02-02 18:08:15 -05:00
  • b735106848
    chore: copy latest schema to stable path for easier diff (#2586) William Murphy 2024-02-02 17:09:28 -05:00
  • 98de2e2f62
    Adding metadata fields when parsing yarn.lock and poetry.lock (#2350) Asi Greenholts 2024-02-02 21:53:42 +02:00
  • d7b9cc70b0
    Add Erlang OTP Application cataloger (#2403) Laurent Goderre 2024-02-02 13:40:18 -05:00
  • 3023a5a7bc
    Detect ELF security features (#2443) Alex Goodman 2024-02-02 11:51:18 -05:00
  • 3da679066e
    Add API examples (#2517) Alex Goodman 2024-02-02 11:26:44 -05:00
  • b7a6d5e946
    feat: Record where CPEs come from (#2552) William Murphy 2024-02-02 11:17:52 -05:00
  • 4fe50f4169
    chore(deps): update stereoscope to 37291e81936d2b43b3cef56667a741ef715fbfe4 (#2583) anchore-actions-token-generator[bot] 2024-02-02 10:27:26 -05:00
  • 78d362f91a
    chore(deps): bump github.com/charmbracelet/bubbles from 0.17.1 to 0.18.0 (#2584) dependabot[bot] 2024-02-02 10:27:09 -05:00
  • 372981ccf8 fix attest reader when no TTY present fix-tui-attest-read Alex Goodman 2024-02-01 16:59:05 -05:00
  • 5a9b664fef
    swap format readseekers for readers (#2581) Alex Goodman 2024-02-01 14:18:13 -05:00
  • 6107e5e2ad
    translate maps to sequences in pkg metadata (#2553) Alex Goodman 2024-02-01 11:58:10 -05:00
  • fef0e54c0f
    chore(deps): update tools to latest versions (#2576) anchore-actions-token-generator[bot] 2024-02-01 10:27:01 -05:00
  • 4a98f9fbd3
    chore(deps): bump anchore/sbom-action from 0.15.7 to 0.15.8 (#2578) dependabot[bot] 2024-02-01 10:26:47 -05:00
  • db49c145f0
    chore(deps): bump marocchino/sticky-pull-request-comment (#2579) dependabot[bot] 2024-02-01 10:26:37 -05:00
  • 3ac7e43e3e
    chore(deps): bump github.com/docker/docker (#2580) dependabot[bot] 2024-02-01 10:26:25 -05:00
  • 216e211dc8
    chore(deps): update stereoscope to db7a4bedaba6ad93becf22ce794f306dfb07fcb9 (#2577) anchore-actions-token-generator[bot] 2024-02-01 08:32:13 +00:00
  • bbddac1f9d
    Fix attest with --key (#2551) William Murphy 2024-01-31 16:39:17 -05:00
  • 3893f80052
    fix(java): improve identification for org.apache.kafka artifacts (#2573) Weston Steimel 2024-01-31 21:34:56 +00:00
  • 630e7153e6
    chore: pluralize the flag (#2564) Christopher Angelo Phillips 2024-01-31 13:21:09 -05:00
  • 28e9ee7106
    chore(deps): update tools to latest versions (#2566) anchore-actions-token-generator[bot] 2024-01-31 13:20:34 -05:00
  • 43837f47f5
    chore(deps): bump peter-evans/create-pull-request from 5.0.2 to 6.0.0 (#2567) dependabot[bot] 2024-01-31 13:20:17 -05:00
  • e880e6dcd6
    chore(deps): bump anchore/sbom-action from 0.15.6 to 0.15.7 (#2568) dependabot[bot] 2024-01-31 13:19:50 -05:00
  • 6ae5b2904d
    re-add cosign signing checksums file (#2572) Alex Goodman 2024-01-31 13:19:41 -05:00
  • 377538e4a6
    revert cosign signing of release checksums file (#2571) v0.103.1 Alex Goodman 2024-01-31 11:58:24 -05:00
  • bbe7fa180a
    bump archiver and stereoscope (#2570) v0.103.0 Alex Goodman 2024-01-31 11:24:33 -05:00
  • 3263f1105f
    fix(dotnet): improve forming dotnet package names dotnet-portable-executable-name-improvements Weston Steimel 2024-01-31 14:26:15 +00:00
  • 31e0fc36e3
    fix: Better test for group ID in filename (#2565) William Murphy 2024-01-31 08:21:33 -05:00
  • aa702a72b4
    Sign checksums file and add SBOMs on release (#2548) Alex Goodman 2024-01-30 13:16:40 -05:00
  • b113391638
    chore(deps): bump anchore/sbom-action from 0.15.5 to 0.15.6 (#2560) dependabot[bot] 2024-01-30 13:15:22 -05:00
  • d4f31d6a3e
    chore(deps): bump github.com/google/go-containerregistry (#2561) dependabot[bot] 2024-01-30 13:15:13 -05:00
  • bd4bcc4e89
    chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.5.3 to 6.5.4 (#2562) dependabot[bot] 2024-01-30 13:15:06 -05:00
  • cf48c3a0c9
    chore(deps): update tools to latest versions (#2554) anchore-actions-token-generator[bot] 2024-01-29 12:32:53 -05:00
  • b4f565a620
    chore(deps): bump github.com/sassoftware/go-rpmutils from 0.2.0 to 0.3.0 (#2556) dependabot[bot] 2024-01-29 12:32:37 -05:00
  • 2e0149fd9e
    chore(deps): bump 8398a7/action-slack from 3.15.1 to 3.16.2 (#2557) dependabot[bot] 2024-01-29 12:32:30 -05:00
  • 87bbc507ee
    chore(deps): bump github/codeql-action from 3.23.1 to 3.23.2 (#2558) dependabot[bot] 2024-01-29 12:32:22 -05:00
  • f893933336
    internalize format helpers (#2543) Alex Goodman 2024-01-26 12:16:26 -05:00
  • b6cbf82389
    Internalize CPE generation logic (#2541) Alex Goodman 2024-01-26 12:16:05 -05:00
  • 7f90b8f1eb
    chore(deps): update tools to latest versions (#2550) anchore-actions-token-generator[bot] 2024-01-26 10:40:44 -05:00
  • d7c51e5c82
    Implement golang Purl subpath (#2547) v0.102.0 Laurent Goderre 2024-01-25 17:04:28 -05:00