Commit Graph

  • 17ef243956
    chore(deps): update tools to latest versions (#2616) anchore-actions-token-generator[bot] 2024-02-14 14:59:49 +00:00
  • 3ac7369068
    chore(deps): bump github/codeql-action from 3.24.0 to 3.24.1 (#2638) dependabot[bot] 2024-02-14 09:21:21 -05:00
  • 4d4efa4963
    chore(deps): bump dawidd6/action-homebrew-bump-formula (#2639) dependabot[bot] 2024-02-14 09:21:05 -05:00
  • a7da2270c7
    chore(deps): bump modernc.org/sqlite from 1.29.0 to 1.29.1 (#2640) dependabot[bot] 2024-02-14 09:20:54 -05:00
  • 6288530835
    fix: add BOMRef to CycloneDX OS Component (#2634) Keith Zantow 2024-02-14 08:18:16 -05:00
  • 25d3c06962
    chore(deps): bump github.com/saferwall/pe from 1.5.0 to 1.5.2 (#2629) dependabot[bot] 2024-02-13 11:23:35 -05:00
  • 79b71be0ee
    chore(deps): bump modernc.org/sqlite from 1.28.0 to 1.29.0 (#2630) dependabot[bot] 2024-02-13 11:23:22 -05:00
  • 25ae7bf55f
    fix getting union reader for sif images (#2631) Alex Goodman 2024-02-13 10:12:31 -05:00
  • e72dec8e9e
    chore(deps): bump golang.org/x/net from 0.20.0 to 0.21.0 (#2607) dependabot[bot] 2024-02-12 14:31:44 -05:00
  • 3398e72066
    chore(deps): bump github.com/saferwall/pe from 1.4.8 to 1.5.0 (#2625) dependabot[bot] 2024-02-12 14:31:31 -05:00
  • d26a5c4d30
    fix: ensure version output to stdout (#2621) Keith Zantow 2024-02-09 15:59:25 -05:00
  • 84576b93e1
    Guess go main module version based on binary contents (#2608) Alex Goodman 2024-02-09 14:52:42 -05:00
  • 737c4e44c5
    chore(deps): update stereoscope to 681f6715b0e35686d6e6f40bce109176de1ee274 (#2617) anchore-actions-token-generator[bot] 2024-02-09 14:06:28 -05:00
  • 7444a9f976
    fix readme around templating options (#2612) Alex Goodman 2024-02-09 13:44:41 -05:00
  • 8683cba081
    suppress executable parsing issues (#2614) Alex Goodman 2024-02-09 12:13:58 -05:00
  • c0f43e5e2d
    chore: update license list, cpe dictionary (#2620) Christopher Angelo Phillips 2024-02-09 11:31:42 -05:00
  • 397cf210de
    chore(deps): update tools to latest versions (#2606) anchore-actions-token-generator[bot] 2024-02-08 10:39:18 -05:00
  • bd0cb916df
    fix: incorrect conversion between integer types (#2605) v0.104.0 Christopher Angelo Phillips 2024-02-07 15:41:00 -05:00
  • da31eed637
    chore(deps): bump golang.org/x/mod from 0.14.0 to 0.15.0 (#2602) dependabot[bot] 2024-02-07 11:31:49 -05:00
  • 704155eb22
    chore(deps): bump github.com/docker/docker (#2601) dependabot[bot] 2024-02-07 11:31:41 -05:00
  • ce67927a98
    Fix: unmarshal key values in Java, Go, and Conan metadata (#2603) William Murphy 2024-02-07 11:26:23 -05:00
  • bbd34f61fd
    fix(dotnet): prefer portable executable product version when semantically greater than file version (#2600) Weston Steimel 2024-02-07 13:28:37 +00:00
  • c61f59e7b7
    Finalize Conan v2 support (#2587) Alex Goodman 2024-02-07 08:24:02 -05:00
  • 00d6269e3c
    chore(deps): update tools to latest versions (#2595) anchore-actions-token-generator[bot] 2024-02-06 10:48:01 -05:00
  • 0bc5971085
    chore(deps): bump actions/upload-artifact from 4.3.0 to 4.3.1 (#2597) dependabot[bot] 2024-02-06 10:44:51 -05:00
  • 91d7a8a992
    chore(deps): update stereoscope to bfa15e446f061bda7f68305d2d6240b053f17e0c (#2589) anchore-actions-token-generator[bot] 2024-02-05 10:27:12 -05:00
  • 05fa8ba4e9
    chore(deps): bump actions/cache from 3.3.2 to 4.0.0 (#2592) dependabot[bot] 2024-02-05 10:26:55 -05:00
  • e813a427b9
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.0 to 0.5.2 (#2591) dependabot[bot] 2024-02-05 10:26:39 -05:00
  • 0618b2cb35
    chore(deps): bump github/codeql-action from 3.23.2 to 3.24.0 (#2593) dependabot[bot] 2024-02-05 09:46:22 -05:00
  • fd3844853a
    labeler should ignore latest version (#2588) Alex Goodman 2024-02-02 18:08:15 -05:00
  • b735106848
    chore: copy latest schema to stable path for easier diff (#2586) William Murphy 2024-02-02 17:09:28 -05:00
  • 98de2e2f62
    Adding metadata fields when parsing yarn.lock and poetry.lock (#2350) Asi Greenholts 2024-02-02 21:53:42 +02:00
  • d7b9cc70b0
    Add Erlang OTP Application cataloger (#2403) Laurent Goderre 2024-02-02 13:40:18 -05:00
  • 3023a5a7bc
    Detect ELF security features (#2443) Alex Goodman 2024-02-02 11:51:18 -05:00
  • 3da679066e
    Add API examples (#2517) Alex Goodman 2024-02-02 11:26:44 -05:00
  • b7a6d5e946
    feat: Record where CPEs come from (#2552) William Murphy 2024-02-02 11:17:52 -05:00
  • 4fe50f4169
    chore(deps): update stereoscope to 37291e81936d2b43b3cef56667a741ef715fbfe4 (#2583) anchore-actions-token-generator[bot] 2024-02-02 10:27:26 -05:00
  • 78d362f91a
    chore(deps): bump github.com/charmbracelet/bubbles from 0.17.1 to 0.18.0 (#2584) dependabot[bot] 2024-02-02 10:27:09 -05:00
  • 372981ccf8 fix attest reader when no TTY present fix-tui-attest-read Alex Goodman 2024-02-01 16:59:05 -05:00
  • 5a9b664fef
    swap format readseekers for readers (#2581) Alex Goodman 2024-02-01 14:18:13 -05:00
  • 6107e5e2ad
    translate maps to sequences in pkg metadata (#2553) Alex Goodman 2024-02-01 11:58:10 -05:00
  • fef0e54c0f
    chore(deps): update tools to latest versions (#2576) anchore-actions-token-generator[bot] 2024-02-01 10:27:01 -05:00
  • 4a98f9fbd3
    chore(deps): bump anchore/sbom-action from 0.15.7 to 0.15.8 (#2578) dependabot[bot] 2024-02-01 10:26:47 -05:00
  • db49c145f0
    chore(deps): bump marocchino/sticky-pull-request-comment (#2579) dependabot[bot] 2024-02-01 10:26:37 -05:00
  • 3ac7e43e3e
    chore(deps): bump github.com/docker/docker (#2580) dependabot[bot] 2024-02-01 10:26:25 -05:00
  • 216e211dc8
    chore(deps): update stereoscope to db7a4bedaba6ad93becf22ce794f306dfb07fcb9 (#2577) anchore-actions-token-generator[bot] 2024-02-01 08:32:13 +00:00
  • bbddac1f9d
    Fix attest with --key (#2551) William Murphy 2024-01-31 16:39:17 -05:00
  • 3893f80052
    fix(java): improve identification for org.apache.kafka artifacts (#2573) Weston Steimel 2024-01-31 21:34:56 +00:00
  • 630e7153e6
    chore: pluralize the flag (#2564) Christopher Angelo Phillips 2024-01-31 13:21:09 -05:00
  • 28e9ee7106
    chore(deps): update tools to latest versions (#2566) anchore-actions-token-generator[bot] 2024-01-31 13:20:34 -05:00
  • 43837f47f5
    chore(deps): bump peter-evans/create-pull-request from 5.0.2 to 6.0.0 (#2567) dependabot[bot] 2024-01-31 13:20:17 -05:00
  • e880e6dcd6
    chore(deps): bump anchore/sbom-action from 0.15.6 to 0.15.7 (#2568) dependabot[bot] 2024-01-31 13:19:50 -05:00
  • 6ae5b2904d
    re-add cosign signing checksums file (#2572) Alex Goodman 2024-01-31 13:19:41 -05:00
  • 377538e4a6
    revert cosign signing of release checksums file (#2571) v0.103.1 Alex Goodman 2024-01-31 11:58:24 -05:00
  • bbe7fa180a
    bump archiver and stereoscope (#2570) v0.103.0 Alex Goodman 2024-01-31 11:24:33 -05:00
  • 3263f1105f
    fix(dotnet): improve forming dotnet package names dotnet-portable-executable-name-improvements Weston Steimel 2024-01-31 14:26:15 +00:00
  • 31e0fc36e3
    fix: Better test for group ID in filename (#2565) William Murphy 2024-01-31 08:21:33 -05:00
  • aa702a72b4
    Sign checksums file and add SBOMs on release (#2548) Alex Goodman 2024-01-30 13:16:40 -05:00
  • b113391638
    chore(deps): bump anchore/sbom-action from 0.15.5 to 0.15.6 (#2560) dependabot[bot] 2024-01-30 13:15:22 -05:00
  • d4f31d6a3e
    chore(deps): bump github.com/google/go-containerregistry (#2561) dependabot[bot] 2024-01-30 13:15:13 -05:00
  • bd4bcc4e89
    chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.5.3 to 6.5.4 (#2562) dependabot[bot] 2024-01-30 13:15:06 -05:00
  • cf48c3a0c9
    chore(deps): update tools to latest versions (#2554) anchore-actions-token-generator[bot] 2024-01-29 12:32:53 -05:00
  • b4f565a620
    chore(deps): bump github.com/sassoftware/go-rpmutils from 0.2.0 to 0.3.0 (#2556) dependabot[bot] 2024-01-29 12:32:37 -05:00
  • 2e0149fd9e
    chore(deps): bump 8398a7/action-slack from 3.15.1 to 3.16.2 (#2557) dependabot[bot] 2024-01-29 12:32:30 -05:00
  • 87bbc507ee
    chore(deps): bump github/codeql-action from 3.23.1 to 3.23.2 (#2558) dependabot[bot] 2024-01-29 12:32:22 -05:00
  • f893933336
    internalize format helpers (#2543) Alex Goodman 2024-01-26 12:16:26 -05:00
  • b6cbf82389
    Internalize CPE generation logic (#2541) Alex Goodman 2024-01-26 12:16:05 -05:00
  • 7f90b8f1eb
    chore(deps): update tools to latest versions (#2550) anchore-actions-token-generator[bot] 2024-01-26 10:40:44 -05:00
  • d7c51e5c82
    Implement golang Purl subpath (#2547) v0.102.0 Laurent Goderre 2024-01-25 17:04:28 -05:00
  • 414fb2f8ad
    fix migration of integration test (#2546) Alex Goodman 2024-01-25 10:18:36 -05:00
  • a32b8d7fc6
    Use the json schema as input for templating (#2542) Alex Goodman 2024-01-25 09:00:35 -05:00
  • 11c0b1c234
    Unexport types and functions cataloger packages (#2530) Alex Goodman 2024-01-24 16:12:46 -05:00
  • e0e1c4ba0a
    Internalize majority of cmd package (#2533) Alex Goodman 2024-01-24 13:29:51 -05:00
  • bf3cd9ed3b
    allow for RPM modularity to be optional (#2540) Alex Goodman 2024-01-24 13:21:59 -05:00
  • ad2843bf50
    chore(deps): bump actions/upload-artifact from 4.2.0 to 4.3.0 (#2536) dependabot[bot] 2024-01-24 10:11:43 -05:00
  • 0bb94099b0
    chore(deps): bump github.com/google/uuid from 1.5.0 to 1.6.0 (#2538) dependabot[bot] 2024-01-24 10:11:33 -05:00
  • 97d0108bd5
    chore(deps): bump github.com/docker/docker (#2537) dependabot[bot] 2024-01-24 10:11:24 -05:00
  • 878df69330
    chore: stop re-exporting wfn.Attributes (#2534) William Murphy 2024-01-24 08:59:03 -05:00
  • 0fe13888d5
    swap format readseekers for readers (#2515) Alex Goodman 2024-01-23 16:44:57 -05:00
  • 8e39ca6dfc
    chore(deps): bump anchore/sbom-action from 0.15.4 to 0.15.5 (#2531) dependabot[bot] 2024-01-23 10:14:05 -05:00
  • 935b885ba2
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.4.12 to 0.5.0 (#2532) dependabot[bot] 2024-01-23 10:13:51 -05:00
  • cdad5e767a
    plumb context through catalogers (#2528) Alex Goodman 2024-01-22 15:54:51 -05:00
  • c5d15d1d6c
    Remove CLI and API deprecations (#2508) Alex Goodman 2024-01-22 12:55:30 -05:00
  • 03b7938fbf
    Turn off the SBOM cataloger by default (#2527) Alex Goodman 2024-01-22 12:32:45 -05:00
  • 4c77783461
    Re-introduce linux kernel cataloger (#2526) Alex Goodman 2024-01-22 11:31:41 -05:00
  • c6ce1de928
    make AllLocations accept a context (#2518) William Murphy 2024-01-22 11:05:59 -05:00
  • 3046d43a8a
    chore(deps): update CPE dictionary index (#2523) anchore-actions-token-generator[bot] 2024-01-22 08:32:31 -05:00
  • df582e8463
    fix: minor cataloger and docs nits (#2519) Dan Luhring 2024-01-19 17:29:47 -05:00
  • 3eab5932e5
    Deduplicate digests from user configuration (#2522) v0.101.1 Alex Goodman 2024-01-19 16:51:55 -05:00
  • 0bc31f4e27
    update readme and help output to be accurate to syft api (#2520) Alex Goodman 2024-01-19 16:18:47 -05:00
  • 22f3a29fd7
    fix: remove second call to finalize as the task handles it (#2516) Christopher Angelo Phillips 2024-01-19 14:12:29 -05:00
  • 969b5f1764
    chore(deps): update stereoscope to eb656fc717935ad5abeb8e1379a5c4e11c957120 (#2510) anchore-actions-token-generator[bot] 2024-01-19 10:25:31 -05:00
  • 1b6c2470b0
    chore(deps): bump github.com/docker/docker (#2512) dependabot[bot] 2024-01-19 10:04:07 -05:00
  • ec802dfc80
    chore(deps): bump actions/upload-artifact from 4.1.0 to 4.2.0 (#2513) dependabot[bot] 2024-01-19 09:31:12 -05:00
  • 8845c938ce
    chore(deps): bump anchore/sbom-action from 0.15.3 to 0.15.4 (#2514) dependabot[bot] 2024-01-19 09:28:37 -05:00
  • 308dc6f9b8
    chore(deps): bump github/codeql-action from 3.23.0 to 3.23.1 (#2506) dependabot[bot] 2024-01-18 09:45:04 -05:00
  • 42dd04699f
    chore(deps): bump github.com/google/go-containerregistry (#2507) dependabot[bot] 2024-01-18 09:44:45 -05:00
  • c816c73341
    chore: enable automatic approval of dependabot PRs (#2505) William Murphy 2024-01-18 08:35:23 -05:00
  • 297ece6904
    include binary cataloger configuration defaults (#2504) v0.101.0 Alex Goodman 2024-01-17 12:06:37 -05:00
  • 5602c80edb
    feat: classifier for wordpress cli binary (#2473) Laurent Goderre 2024-01-17 11:42:03 -05:00