Commit Graph

  • da4b2df576
    fix: spdx java checksum correctness (#1348) v0.62.0 Christopher Angelo Phillips 2022-11-18 13:42:55 -05:00
  • 9d8244bae6
    feat: Add support for npm lockfile version 3 (#1206) Rob Cresswell 2022-11-18 17:41:31 +00:00
  • 67888ee855
    1111 clean name bug (#1347) v0.61.0 Christopher Angelo Phillips 2022-11-18 09:45:18 -05:00
  • 9afc9231c0
    Add spdx relationship encoding for dependencies (#1342) Alex Goodman 2022-11-18 09:40:10 -05:00
  • 42cb0a47a4
    feat: SPDX 2.3 support (#1311) Keith Zantow 2022-11-18 08:54:39 -05:00
  • 0c4b99c1c2
    SBOM cataloger (#1029) patrikbeno 2022-11-16 20:11:45 +01:00
  • 0774ad15e2
    chore: clean up linting configuration (#1343) Christopher Angelo Phillips 2022-11-16 11:28:09 -05:00
  • f8be64d312
    fix: Unmarshal Syft JSON with missing metadata (#1338) Keith Zantow 2022-11-15 13:00:10 -05:00
  • 1ae577a035
    fix apk decode for older data shapes (#1341) Alex Goodman 2022-11-15 11:38:31 -05:00
  • 09bf5b062c
    chore: add unit test for wolfi os release identification (#1340) Weston Steimel 2022-11-14 23:57:31 +00:00
  • c1fdfce5f1
    fix: Output only valid CPEs for CycloneDX OS components (#1339) Keith Zantow 2022-11-14 15:24:19 -05:00
  • 10f43d75e0
    feat: Add --name option to override name in output (#1269) Justin Chadwell 2022-11-10 19:03:23 +00:00
  • 949cff158d
    Add support for dependency relationships for alpine (apk) (#1063) Dan Luhring 2022-11-09 10:43:37 -05:00
  • e58d0aecb8
    normalize alpm md5 refs (#1333) Alex Goodman 2022-11-09 10:04:15 -05:00
  • d7a51a69dd
    Update java generic cataloger (#1329) Alex Goodman 2022-11-09 09:55:54 -05:00
  • f3528132a7
    Support encoding map types to CycloneDX properties (#1332) Keith Zantow 2022-11-08 18:59:37 -05:00
  • 5ed002e1a9
    Update swift cataloger to generic cataloger (#1324) Alex Goodman 2022-11-04 13:51:59 -04:00
  • f319713821
    port rust cataloger to new generic cataloger pattern (#1323) Alex Goodman 2022-11-04 12:07:36 -04:00
  • 41464bbd7f
    port ruby cataloger to new generic cataloger pattern (#1322) Alex Goodman 2022-11-04 11:33:55 -04:00
  • 3048382bbd
    port rpm cataloger to new generic cataloger pattern (#1321) Alex Goodman 2022-11-04 10:41:04 -04:00
  • 1076281566
    port python cataloger to new generic cataloger pattern (#1319) Alex Goodman 2022-11-04 08:59:03 -04:00
  • 2deb96a801
    Update portage cataloger to new generic cataloger (#1316) Alex Goodman 2022-11-03 14:49:18 -04:00
  • 891f2c576b
    port php cataloger to new generic cataloger pattern (#1315) Alex Goodman 2022-11-03 13:00:44 -04:00
  • bc9740d50a
    javascript cataloger: node binary: nil pointer dereference (#1313) v0.60.3 Kenny Moens 2022-11-03 15:38:49 +01:00
  • 3e99c4d7d8
    Fix: Include version information in binary cataloger CPEs (#1310) Keith Zantow 2022-11-03 10:17:15 -04:00
  • 10464642e9
    fix: only generate PURL on empty string (#1312) Christopher Angelo Phillips 2022-11-03 10:00:14 -04:00
  • e0acfa98c7
    add s3 credentials to release (#1309) Alex Goodman 2022-11-02 11:48:37 -04:00
  • 9634b42746
    port javascript cataloger to new generic cataloger pattern (#1308) Alex Goodman 2022-11-02 11:31:57 -04:00
  • 35f0f2931e
    chore: update goreleaser brew token (#1306) v0.60.2 Keith Zantow 2022-11-02 10:05:20 -04:00
  • 95c7378109
    fix: Decode binary and unknown metadata (#1307) Keith Zantow 2022-11-01 17:26:00 -04:00
  • ba57f3db51
    chore: update github token permissions for goreleaser (#1305) v0.60.1 Keith Zantow 2022-11-01 12:28:37 -04:00
  • 4c5c6f6319
    fix: update ci secret to use new password (#1304) v0.60.0 Christopher Angelo Phillips 2022-11-01 10:30:29 -04:00
  • 1b69fbd566
    fix: update secret value to use new cert cahin (#1303) Christopher Angelo Phillips 2022-10-31 20:05:40 -04:00
  • 7ed91c0e31
    fix: verbose quill release failures (#1302) Christopher Angelo Phillips 2022-10-31 18:21:30 -04:00
  • 8e2fc29bc7
    fix: unterminated quoted string (#1300) Christopher Angelo Phillips 2022-10-31 16:07:43 -04:00
  • e9fbc38064
    fix: update Makefile to remove old signing arch (#1299) Christopher Angelo Phillips 2022-10-31 14:56:30 -04:00
  • edeba9c01c
    feat: add nodejs-binary package classifier (#1296) Christopher Angelo Phillips 2022-10-31 12:45:11 -04:00
  • 919c929798
    update go-rpmdb to improve parsing of installed files (#1297) Weston Steimel 2022-10-31 03:55:17 +00:00
  • 91f4467a1f
    docs: update attestation directions with new cosign changes Nick Piper 2022-10-29 21:18:53 +01:00
  • c489c37e35
    fix: Continue parsing Python RECORD files when bad lines encountered (#1295) Keith Zantow 2022-10-29 15:45:59 -04:00
  • dd89461ba3
    Fix #1245 Update SPDX license list to 3.18 (#1259) Marc-Etienne Vargenau 2022-10-28 05:46:54 +02:00
  • fb388c0f25
    fix: Resolve Maven POM expressions (#1251) (#1278) Rob Tompkins 2022-10-27 13:01:07 -04:00
  • e52aa3bc03
    port haskell cataloger to new generic cataloger pattern (#1290) Alex Goodman 2022-10-27 11:30:22 -04:00
  • 6826d7603b
    port golang cataloger to new generic cataloger pattern (#1289) Alex Goodman 2022-10-25 12:42:50 -04:00
  • 52cb7269bf
    port deb/dpkg cataloger to new generic cataloger pattern (#1288) Alex Goodman 2022-10-25 11:47:32 -04:00
  • bd5adbc9b3
    update cataloger tests to use pkgtest utils (#1287) Alex Goodman 2022-10-25 11:20:02 -04:00
  • c7a653060d
    port dotnet cataloger to new generic cataloger pattern (#1286) Alex Goodman 2022-10-24 17:17:27 -04:00
  • fbdde6d4f4
    port dart cataloger to new generic cataloger pattern (#1285) Alex Goodman 2022-10-24 16:37:42 -04:00
  • eb8ebd9ffc
    port conan cataloger to new generic cataloger pattern (#1284) Alex Goodman 2022-10-24 16:11:20 -04:00
  • f36c0ca971
    port apk cataloger to new generic cataloger pattern (#1283) Alex Goodman 2022-10-24 13:51:09 -04:00
  • 28cadfdb5d
    replace signing tooling with quill (#1280) Alex Goodman 2022-10-24 13:03:10 -04:00
  • b44f441c82
    Upgrade generic cataloger (#1281) Alex Goodman 2022-10-24 11:12:12 -04:00
  • 7a8b96abc2
    Update syft bootstrap tools to latest versions. (#1282) anchore-actions-token-generator[bot] 2022-10-24 10:17:06 -04:00
  • d8c659b65b
    replace logger interface with anchore/go-logger (#1279) Alex Goodman 2022-10-21 11:12:14 -04:00
  • 5568cc0dd5
    Update syft bootstrap tools to latest versions. (#1267) anchore-actions-token-generator[bot] 2022-10-21 09:42:13 -04:00
  • 78a0af2e2d
    Add go binary h1 digest to SPDX (#1265) Keith Zantow 2022-10-19 16:33:10 -04:00
  • 6e764815d0
    fix: move reproduction to top of issue (#1264) Christopher Angelo Phillips 2022-10-19 12:51:38 -04:00
  • ec229b993c
    fix: update syftjson ID to match major schema version (#1274) Christopher Angelo Phillips 2022-10-19 12:08:38 -04:00
  • d3ee24017e
    Use in-toto CycloneDX predicate to be compatible with cosign (#1270) Arnaud J Le Hors 2022-10-19 15:37:52 +02:00
  • e2d06cecb7
    chore: handle deprecated SPDX license: StandardML-NJ (#1266) Marc-Etienne Vargenau 2022-10-17 19:45:36 +02:00
  • 41bc6bb410
    Fixes #1179 Deprecated SPDX license (#1263) v0.59.0 Marc-Etienne Vargenau 2022-10-14 21:54:57 +02:00
  • 89575199b8
    feat: add RelationshipsBySourceOwnership to syft json output (#1248) Christopher Angelo Phillips 2022-10-11 15:11:03 -04:00
  • fa0b3c0438
    fix: reset merged package into map; (#1258) Christopher Angelo Phillips 2022-10-11 14:35:46 -04:00
  • 780e1c310c
    refactor: Remove experimental Anchore Enterprise upload functionality (#1257) Keith Zantow 2022-10-10 16:16:47 -04:00
  • d89e320dcd
    Update syft bootstrap tools to latest versions. (#1254) anchore-actions-token-generator[bot] 2022-10-07 13:54:42 -04:00
  • 71187c6416
    Update Stereoscope to d24c9d626b33fa720210b007a20767801827b532 (#1253) anchore-actions-token-generator[bot] 2022-10-06 22:04:49 -04:00
  • 58504d5bf3
    Update syft bootstrap tools to latest versions. (#1244) anchore-actions-token-generator[bot] 2022-10-06 08:38:36 +00:00
  • 48f0a4680f
    fix apkdb checksum representation (#1247) Alex Goodman 2022-10-05 16:29:05 -04:00
  • 7d2fe9d95e
    feat: add identifiable field to source object (#1243) Christopher Angelo Phillips 2022-10-05 14:01:40 -04:00
  • 40d294a89e
    feat: attest support for Singularity images (#1201) Adam Hughes 2022-10-04 12:34:59 -04:00
  • 91eece47ff
    Update syft bootstrap tools to latest versions. (#1239) anchore-actions-token-generator[bot] 2022-10-04 10:18:21 +01:00
  • 1fa4bab7a7
    Update Stereoscope to 1b1b744a919964f38d14e1416fb3f25221b761ce (#1240) anchore-actions-token-generator[bot] 2022-10-04 10:17:29 +01:00
  • 4d2f18218c
    fix: Follow symlinks when searching for globs in all-layers scope (#1221) Keith Zantow 2022-09-30 13:01:08 -04:00
  • dd7c654ed0
    update requires to use list; remove field (#1234) Christopher Angelo Phillips 2022-09-30 11:57:13 -04:00
  • b9b13d5525
    Add Conan (C/C++) conan.lock file support (#1230) v0.58.0 Hiroaki KAWAI 2022-09-30 03:45:59 +09:00
  • e6502536a7
    add sequence diagrams and flesh out TODO notes (#1233) Christopher Angelo Phillips 2022-09-28 13:05:49 -04:00
  • 6a40dbf765
    Do not fail if unable to parse .rpm file (#1232) Keith Zantow 2022-09-28 11:26:06 -04:00
  • 16c62a1378
    fix: support exclude patterns on Windows (#1228) Keith Zantow 2022-09-26 10:59:19 -04:00
  • 30e8c4ab8e
    Update syft bootstrap tools to latest versions. (#1225) anchore-actions-token-generator[bot] 2022-09-23 09:26:30 -04:00
  • 911242accc
    Update Stereoscope to 56552770e555d764ea72b99d3c810326b27ead4a (#1224) anchore-actions-token-generator[bot] 2022-09-22 10:44:52 +01:00
  • ab6e1c4dc3
    Update syft bootstrap tools to latest versions. (#1223) anchore-actions-token-generator[bot] 2022-09-22 10:41:36 +01:00
  • 1cfa73732a
    Update syft bootstrap tools to latest versions. (#1220) anchore-actions-token-generator[bot] 2022-09-20 10:28:53 -04:00
  • 04d288b364
    feat: catalog python files for installed-files.txt file metadata (#1217) v0.57.0 Christopher Angelo Phillips 2022-09-19 16:08:02 -04:00
  • c2005fad8d
    Stabilize SPDX JSON output sorting (#1216) Keith Zantow 2022-09-19 15:31:00 -04:00
  • 0f99215b2c
    bug: remove chance for panic; provide default attestation path (#1214) Christopher Angelo Phillips 2022-09-19 11:50:33 -04:00
  • ad263e6562
    refactor: update Makefile organization; update DEVELOPING.md instructions (#1212) Christopher Angelo Phillips 2022-09-19 10:38:12 -04:00
  • b48316742f
    refactor: replace ioutil=>io; update linter (#1211) Christopher Angelo Phillips 2022-09-16 13:58:16 -04:00
  • 0a1cd25ba5
    Update bootstrap tools to latest versions. (#1204) anchore-actions-token-generator[bot] 2022-09-14 15:28:08 -04:00
  • b20310eaf8
    Add gosimports (#1205) Keith Zantow 2022-09-14 13:38:18 -04:00
  • 9097614f3b
    refactor: move formats from internal into syft module (#1172) Chapman Pendery 2022-09-13 08:20:52 -07:00
  • c5dca001e2
    warn on errors from RPM DB parsing (#1200) v0.56.0 Alex Goodman 2022-09-09 14:59:42 -04:00
  • 999994f197
    docs: improve Singularity image source docs (#1190) Adam Hughes 2022-09-07 14:43:38 -04:00
  • 70db13d49e
    Add RPM file scanning support (#1188) Keith Zantow 2022-09-07 14:16:30 -04:00
  • 1c7b7c5f8a
    Normalize syft-json output (#1194) Scott Andrews 2022-09-07 10:56:49 -04:00
  • 586d3fe77f
    Revert "External sources configuration (#1158)" (#1191) Christopher Angelo Phillips 2022-09-01 15:45:35 -04:00
  • 1b0cfe7246
    Update syft bootstrap tools to latest versions. (#1186) anchore-actions-token-generator[bot] 2022-08-31 09:04:45 -04:00
  • a17ff7b555
    Fix RPM DB license handling (#1184) Keith Zantow 2022-08-30 14:38:12 -04:00
  • ccc5a89226
    Update syft bootstrap tools to latest versions. (#1182) anchore-actions-token-generator[bot] 2022-08-30 09:18:36 -04:00
  • a7966a4d9d
    update stereoscope to latest (#1181) v0.55.0 Christopher Angelo Phillips 2022-08-29 15:28:19 -04:00
  • 4ebf6aff86
    Update syft bootstrap tools to latest versions. (#1180) anchore-actions-token-generator[bot] 2022-08-29 10:30:58 -04:00