Commit Graph

  • 0302fc5b48
    chore(deps): bump github.com/google/go-cmp from 0.5.9 to 0.6.0 (#2215) dependabot[bot] 2023-10-11 09:53:00 -04:00
  • b899536814
    chore(deps): bump github.com/charmbracelet/lipgloss from 0.8.0 to 0.9.0 (#2216) dependabot[bot] 2023-10-11 09:52:42 -04:00
  • d1120ad56e
    chore: add automated homebrew action (#2164) Christopher Angelo Phillips 2023-10-11 09:52:22 -04:00
  • ef759038f5
    Add relationships for dpkg packages (#2212) Alex Goodman 2023-10-11 08:56:26 -04:00
  • 0748945c83
    Parse the Maven license from the pom.xml if not contained in the mani… (#2115) v0.93.0 Colm O hEigeartaigh 2023-10-10 18:09:44 +01:00
  • 185d0d1bfa
    Refine the docs for building a cataloger (#2175) Alex Goodman 2023-10-09 13:44:38 -04:00
  • d16ecdf715
    Fix algo lookup by converting key to lower case (#2207) Mohammad Sharief Baig 2023-10-09 22:37:18 +05:30
  • 68cf57ed03
    chore(deps): bump github/codeql-action from 2.22.0 to 2.22.1 (#2208) dependabot[bot] 2023-10-09 13:05:57 -04:00
  • f6c8057977
    feat: add package for go compiler given binary detection (#2195) Christopher Angelo Phillips 2023-10-06 13:15:50 -04:00
  • 87e57aa925
    chore(deps): bump github.com/docker/distribution from 2.8.2+incompatible to 2.8.3+incompatible (#2193) dependabot[bot] 2023-10-06 12:54:19 -04:00
  • eed35ec9ce
    chore(deps): bump github/codeql-action from 2.21.9 to 2.22.0 (#2202) dependabot[bot] 2023-10-06 12:02:34 -04:00
  • b23879fd37
    chore(deps): bump golang.org/x/net from 0.15.0 to 0.16.0 (#2204) dependabot[bot] 2023-10-06 12:01:38 -04:00
  • 30f0686353
    chore: update license list to 3.22 (#2201) Christopher Angelo Phillips 2023-10-06 10:56:47 -04:00
  • 235ad2e749
    Add exact syntax of the conversion formats (#2196) Marc-Etienne Vargenau 2023-10-05 20:48:30 +02:00
  • 127fac8ca9
    chore(deps): bump github.com/saferwall/pe from 1.4.6 to 1.4.7 (#2198) dependabot[bot] 2023-10-05 13:02:30 -04:00
  • 37bb95f5c9
    chore(deps): bump golang.org/x/mod from 0.12.0 to 0.13.0 (#2199) dependabot[bot] 2023-10-05 11:50:05 -04:00
  • 1067dc2ce9
    chore: removes unnecessary conditional (#2194) chavacava 2023-10-04 20:06:12 +02:00
  • 21878784a8
    chore: improve --output help text and deprecate --file (#2187) Mohammad Sharief Baig 2023-10-03 20:43:07 +05:30
  • 86005d1593
    chore(deps): bump modernc.org/sqlite from 1.25.0 to 1.26.0 (#2189) dependabot[bot] 2023-10-02 12:34:59 -04:00
  • 45625dae94
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.4.10 to 0.4.11 (#2191) dependabot[bot] 2023-10-02 12:33:42 -04:00
  • 38d5ef2c84
    chore(deps): bump github/codeql-action from 2.21.8 to 2.21.9 (#2182) dependabot[bot] 2023-09-28 10:56:08 -04:00
  • 1217ed2307 WIP: possible improvement to group ID guessing possibly-better-group-id-guessing Will Murphy 2023-09-27 17:24:08 -04:00
  • 44e5480238
    chore(deps): update bootstrap tools to latest versions (#2178) anchore-actions-token-generator[bot] 2023-09-27 15:05:15 -04:00
  • 7b1af8721d
    chore(deps): bump github.com/saferwall/pe from 1.4.5 to 1.4.6 (#2180) dependabot[bot] 2023-09-27 15:04:52 -04:00
  • 8f57d22f63
    chore(deps): update bootstrap tools to latest versions (#2171) v0.92.0 anchore-actions-token-generator[bot] 2023-09-26 11:14:25 -04:00
  • 351c683cb4
    chore(deps): bump actions/checkout from 4.0.0 to 4.1.0 (#2172) dependabot[bot] 2023-09-26 07:49:13 -04:00
  • 534a5f54b0
    chore(deps): bump github.com/spf13/afero from 1.9.5 to 1.10.0 (#2174) dependabot[bot] 2023-09-25 15:07:19 -04:00
  • 8a414b5366
    chore: bump stereoscope to fix data race in UI code (#2173) William Murphy 2023-09-25 10:29:56 -04:00
  • e34adea749
    fix: deterministic java purls (#2170) William Murphy 2023-09-25 09:28:18 -04:00
  • 8314c0d2cb
    Correcting behavior based on Syft release v0.91.0 run (#2162) Alex Goodman 2023-09-20 16:18:44 -04:00
  • b7fa75d7f8
    chore: switch to stdlib's slices pkg (#2148) v0.91.0 Đỗ Trọng Hải 2023-09-21 01:38:37 +07:00
  • 7d0d3e1977
    fix: prevent errors from clobbering terminal (#2161) Keith Zantow 2023-09-20 14:35:41 -04:00
  • 58f8c852df
    Require ordering of relationships when comparing parser output (#2160) Alex Goodman 2023-09-20 13:39:18 -04:00
  • b8f52d570e
    chore: stop unit test switch on host arch (#2156) William Murphy 2023-09-20 11:45:13 -04:00
  • ba00f3328d
    chore(deps): bump github.com/github/go-spdx/v2 from 2.1.2 to 2.2.0 (#2158) dependabot[bot] 2023-09-20 10:12:33 -04:00
  • 962ff1ec49
    chore(deps): bump tibdex/github-app-token from 2.0.0 to 2.1.0 (#2157) dependabot[bot] 2023-09-20 10:12:13 -04:00
  • 40899adb87
    use annotated tags, update chronicle, fix cache keys (#2154) Alex Goodman 2023-09-20 10:11:44 -04:00
  • 650f71cbe0
    chore: update to latest stereoscope (#2151) Christopher Angelo Phillips 2023-09-19 15:22:10 -04:00
  • 30885ed92e
    chore(deps): bump github/codeql-action from 2.21.7 to 2.21.8 (#2150) dependabot[bot] 2023-09-19 14:37:54 -04:00
  • 51243aa65f
    chore(deps): update stereoscope to 41288870305034fade27388afa7326c44eb8ff17 (#2149) anchore-actions-token-generator[bot] 2023-09-19 09:07:15 -04:00
  • 23e3de75e3
    Add containerd support (#1793) Shane Dell 2023-09-18 11:33:43 -04:00
  • 594ba5f295
    chore: pin workflow checkout for cpe update-cpe-dictionary-index (#2141) Christopher Angelo Phillips 2023-09-15 16:00:15 -04:00
  • 5d48882a78
    Add GitHub actions and shared workflow usage catalogers (#2140) Alex Goodman 2023-09-15 14:51:21 -04:00
  • ec4d595920
    feat: add dependency information to conan lockfile parser (#2131) Stefan Profanter 2023-09-15 20:31:08 +02:00
  • 094b41b301
    chore: pin and update all workflow dependencies; add permission scopes (#2138) Christopher Angelo Phillips 2023-09-15 14:18:42 -04:00
  • 2eb2d55551
    chore: pin all cli test FROM lines to linux/amd64 (#2137) William Murphy 2023-09-15 12:49:02 -04:00
  • a46d12270f
    fix: encode and decode FileLicenses and FileContents in Syft JSON (#2083) Keith Zantow 2023-09-13 16:14:20 -04:00
  • 3e16c6813f
    feat: add cyclonedx schema version selection (#2123) Christopher Angelo Phillips 2023-09-13 14:50:22 -04:00
  • 5035d9ca1a
    fix: allow cyclonedx json input with no components (#2127) Ahmet Taha 2023-09-13 19:14:14 +02:00
  • c21b16d924
    chore(deps): bump docker/login-action from 2 to 3 (#2119) dependabot[bot] 2023-09-13 10:34:19 -04:00
  • 4a2fc226dd
    chore(deps): bump github.com/go-git/go-git/v5 from 5.8.1 to 5.9.0 (#2125) dependabot[bot] 2023-09-13 10:33:47 -04:00
  • 7de5643227
    fix source-version typo in flag description (#2126) Alex Goodman 2023-09-13 10:05:24 -04:00
  • 9de4129638
    chore: enforce race detector (#2122) William Murphy 2023-09-12 13:09:18 -04:00
  • 3a45653cfa
    chore(deps): update stereoscope to 2fc2d6c2503b6e2212e04c64ceffd57c3395ae70 (#2117) anchore-actions-token-generator[bot] 2023-09-12 11:49:20 -04:00
  • b82c0ffc34
    fix(help): power-user help text to indicate it supports file-system (#2113) v0.90.0 GGMU 2023-09-11 19:12:04 +03:00
  • b2be411f77
    chore(deps): bump tibdex/github-app-token from 1 to 2 (#2116) dependabot[bot] 2023-09-11 09:56:22 -04:00
  • ec22f4b773
    chore(deps): update CPE dictionary index (#2114) anchore-actions-token-generator[bot] 2023-09-11 09:42:59 -04:00
  • e3c525b4b8
    chore(deps): update stereoscope to 057dda3667e7f2b5e6ec6716747badd5f403c6de (#2109) anchore-actions-token-generator[bot] 2023-09-08 14:10:00 -04:00
  • d54d20a563 use new atomic stager struct fix-go-progress-race Will Murphy 2023-09-08 10:13:52 -04:00
  • abfd244dc5 test for race conditions Will Murphy 2023-09-08 08:42:19 -04:00
  • 8e9d1d5e91 Fix race in current stage fo go-progress Will Murphy 2023-09-08 07:48:42 -04:00
  • 3842d28e90
    fix: update codeql-analysis for go 1.21 (#2108) Christopher Angelo Phillips 2023-09-07 15:54:42 -04:00
  • 9f22ab6137
    Bump the golang.org/x/exp dependency and fix a build breakage. (#2088) dlorenc 2023-09-07 14:55:52 -04:00
  • 1315cfd787
    chore(deps): bump actions/checkout from 3 to 4 (#2094) dependabot[bot] 2023-09-07 09:57:51 -04:00
  • 212aa9b6cf
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.4.7 to 0.4.10 (#2106) dependabot[bot] 2023-09-07 09:56:41 -04:00
  • 46e4ac1474
    chore(deps): update bootstrap tools to latest versions (#2086) anchore-actions-token-generator[bot] 2023-09-07 09:30:44 -04:00
  • 6800a5f64b
    chore(deps): update CPE dictionary index (#2089) anchore-actions-token-generator[bot] 2023-09-07 09:30:18 -04:00
  • 9caf51596e
    chore(deps): bump github.com/saferwall/pe from 1.4.4 to 1.4.5 (#2096) dependabot[bot] 2023-09-07 09:29:06 -04:00
  • 7645d5759d
    chore(deps): bump github.com/docker/docker (#2098) dependabot[bot] 2023-09-07 09:27:21 -04:00
  • ce32f8bb74
    chore(deps): bump golang.org/x/net from 0.14.0 to 0.15.0 (#2099) dependabot[bot] 2023-09-07 09:26:56 -04:00
  • f8ab7c4695
    feat(cmd/update): add UA header with current ver when check for update (#2100) Đỗ Trọng Hải 2023-09-06 22:43:01 +07:00
  • 305ee87052
    fix(cdx): validate external refs before encoding (#2091) Đỗ Trọng Hải 2023-09-05 21:39:51 +07:00
  • 49e7f399f9
    expose cobra command in cli package (#2097) Alex Goodman 2023-09-05 10:33:38 -04:00
  • 007b034ee3
    fix: correct group IDs for commons-codec, okhttp, okio, and add integration tests for Java PURL generation (#2075) William Murphy 2023-08-31 16:57:55 -04:00
  • b454160549
    tidy gomod and gitignore (#2082) v0.89.0 Alex Goodman 2023-08-31 10:50:32 -04:00
  • 36d794febe
    fix quiet flag (#2081) Alex Goodman 2023-08-31 10:40:11 -04:00
  • 51d38f8e59
    fix: in some cases, try to use pom info to guess name and version to top level jar (#2080) William Murphy 2023-08-31 10:19:55 -04:00
  • cfebae27f5
    fix: don't panic on universal go binaries (#2078) William Murphy 2023-08-30 08:37:50 -04:00
  • 2b7a9d0be3
    chore: update CLI to CLIO (#2001) Keith Zantow 2023-08-29 15:52:26 -04:00
  • b03e9c6868
    Add registry certificate verification support (#1734) 5p2O5pe25ouT 2023-08-29 23:45:20 +08:00
  • cedfa05e93
    fix: CPE generation for django (#2068) witchcraze 2023-08-28 21:28:01 +09:00
  • dd09e0362e
    chore: update quill to the latest version (#2065) v0.88.0 Keith Zantow 2023-08-25 16:45:04 -04:00
  • 4ae94c37eb
    fix: duplicate entries in cyclonedx dependency list (#2063) Keith Zantow 2023-08-25 12:19:01 -04:00
  • d08e2be768
    Fix panic in pom parsing (#2064) William Murphy 2023-08-25 12:04:57 -04:00
  • faa902209e
    Fix: don't validate pom declared group (#2054) William Murphy 2023-08-24 13:28:40 -04:00
  • 9a2a988e7f
    chore: trace log pom property reflect usage (#2059) William Murphy 2023-08-24 11:28:44 -04:00
  • 5ceef48949
    fix: do not double-prefix symlink paths that already contain volume names (#2051) Chris Selzo 2023-08-24 07:45:22 -07:00
  • 1848aa22cf
    feat: add bash classifier (#2055) witchcraze 2023-08-24 23:13:59 +09:00
  • 62f689824c
    Detect golang boring crypto and fipsonly modules (#2021) Sirish Bathina 2023-08-24 03:49:59 -10:00
  • 07ac640ac5
    fix: properly parse conan ref and include user and channel (#2034) Stefan Profanter 2023-08-23 19:51:07 +02:00
  • a2b389523d
    chore(deps): bump github.com/charmbracelet/lipgloss from 0.7.1 to 0.8.0 (#2053) dependabot[bot] 2023-08-23 13:41:17 -04:00
  • 17d4203bbb
    Enable reading non-utf-8 encodings for java pom.xml files (#2047) Alex Goodman 2023-08-23 10:06:34 -04:00
  • ee121cff21
    feat: 1944 - update purl generation to use a consistent groupID (#2033) Christopher Angelo Phillips 2023-08-22 10:47:07 -04:00
  • cf37b17869
    chore(deps): bump github.com/google/uuid from 1.3.0 to 1.3.1 (#2049) dependabot[bot] 2023-08-22 10:42:19 -04:00
  • ee656fe088
    chore(deps): update bootstrap tools to latest versions (#2048) anchore-actions-token-generator[bot] 2023-08-22 08:48:42 -04:00
  • f58425a305
    chore(deps): bump github.com/jinzhu/copier from 0.3.5 to 0.4.0 (#2045) dependabot[bot] 2023-08-21 10:37:11 -04:00
  • 01c7709e0d
    chore(deps): update CPE dictionary index (#2043) anchore-actions-token-generator[bot] 2023-08-21 09:33:41 -04:00
  • cb0214ec1d
    fill out new version notice (#2042) Alex Goodman 2023-08-18 16:03:11 -04:00
  • 4c3e49957c
    chore: more lenient java groupID lookups fix/more-lenient-java-groupid Keith Zantow 2023-08-17 14:38:28 -04:00
  • 4762ba0943
    feat: use java package names to determine known groupids (#2032) v0.87.1 Keith Zantow 2023-08-17 12:55:25 -04:00