Commit Graph

  • 919c929798
    update go-rpmdb to improve parsing of installed files (#1297) Weston Steimel 2022-10-31 03:55:17 +00:00
  • 91f4467a1f
    docs: update attestation directions with new cosign changes Nick Piper 2022-10-29 21:18:53 +01:00
  • c489c37e35
    fix: Continue parsing Python RECORD files when bad lines encountered (#1295) Keith Zantow 2022-10-29 15:45:59 -04:00
  • dd89461ba3
    Fix #1245 Update SPDX license list to 3.18 (#1259) Marc-Etienne Vargenau 2022-10-28 05:46:54 +02:00
  • fb388c0f25
    fix: Resolve Maven POM expressions (#1251) (#1278) Rob Tompkins 2022-10-27 13:01:07 -04:00
  • e52aa3bc03
    port haskell cataloger to new generic cataloger pattern (#1290) Alex Goodman 2022-10-27 11:30:22 -04:00
  • 6826d7603b
    port golang cataloger to new generic cataloger pattern (#1289) Alex Goodman 2022-10-25 12:42:50 -04:00
  • 52cb7269bf
    port deb/dpkg cataloger to new generic cataloger pattern (#1288) Alex Goodman 2022-10-25 11:47:32 -04:00
  • bd5adbc9b3
    update cataloger tests to use pkgtest utils (#1287) Alex Goodman 2022-10-25 11:20:02 -04:00
  • c7a653060d
    port dotnet cataloger to new generic cataloger pattern (#1286) Alex Goodman 2022-10-24 17:17:27 -04:00
  • fbdde6d4f4
    port dart cataloger to new generic cataloger pattern (#1285) Alex Goodman 2022-10-24 16:37:42 -04:00
  • eb8ebd9ffc
    port conan cataloger to new generic cataloger pattern (#1284) Alex Goodman 2022-10-24 16:11:20 -04:00
  • f36c0ca971
    port apk cataloger to new generic cataloger pattern (#1283) Alex Goodman 2022-10-24 13:51:09 -04:00
  • 28cadfdb5d
    replace signing tooling with quill (#1280) Alex Goodman 2022-10-24 13:03:10 -04:00
  • b44f441c82
    Upgrade generic cataloger (#1281) Alex Goodman 2022-10-24 11:12:12 -04:00
  • 7a8b96abc2
    Update syft bootstrap tools to latest versions. (#1282) anchore-actions-token-generator[bot] 2022-10-24 10:17:06 -04:00
  • d8c659b65b
    replace logger interface with anchore/go-logger (#1279) Alex Goodman 2022-10-21 11:12:14 -04:00
  • 5568cc0dd5
    Update syft bootstrap tools to latest versions. (#1267) anchore-actions-token-generator[bot] 2022-10-21 09:42:13 -04:00
  • 78a0af2e2d
    Add go binary h1 digest to SPDX (#1265) Keith Zantow 2022-10-19 16:33:10 -04:00
  • 6e764815d0
    fix: move reproduction to top of issue (#1264) Christopher Angelo Phillips 2022-10-19 12:51:38 -04:00
  • ec229b993c
    fix: update syftjson ID to match major schema version (#1274) Christopher Angelo Phillips 2022-10-19 12:08:38 -04:00
  • d3ee24017e
    Use in-toto CycloneDX predicate to be compatible with cosign (#1270) Arnaud J Le Hors 2022-10-19 15:37:52 +02:00
  • e2d06cecb7
    chore: handle deprecated SPDX license: StandardML-NJ (#1266) Marc-Etienne Vargenau 2022-10-17 19:45:36 +02:00
  • 41bc6bb410
    Fixes #1179 Deprecated SPDX license (#1263) v0.59.0 Marc-Etienne Vargenau 2022-10-14 21:54:57 +02:00
  • 89575199b8
    feat: add RelationshipsBySourceOwnership to syft json output (#1248) Christopher Angelo Phillips 2022-10-11 15:11:03 -04:00
  • fa0b3c0438
    fix: reset merged package into map; (#1258) Christopher Angelo Phillips 2022-10-11 14:35:46 -04:00
  • 780e1c310c
    refactor: Remove experimental Anchore Enterprise upload functionality (#1257) Keith Zantow 2022-10-10 16:16:47 -04:00
  • d89e320dcd
    Update syft bootstrap tools to latest versions. (#1254) anchore-actions-token-generator[bot] 2022-10-07 13:54:42 -04:00
  • 71187c6416
    Update Stereoscope to d24c9d626b33fa720210b007a20767801827b532 (#1253) anchore-actions-token-generator[bot] 2022-10-06 22:04:49 -04:00
  • 58504d5bf3
    Update syft bootstrap tools to latest versions. (#1244) anchore-actions-token-generator[bot] 2022-10-06 08:38:36 +00:00
  • 48f0a4680f
    fix apkdb checksum representation (#1247) Alex Goodman 2022-10-05 16:29:05 -04:00
  • 7d2fe9d95e
    feat: add identifiable field to source object (#1243) Christopher Angelo Phillips 2022-10-05 14:01:40 -04:00
  • 40d294a89e
    feat: attest support for Singularity images (#1201) Adam Hughes 2022-10-04 12:34:59 -04:00
  • 91eece47ff
    Update syft bootstrap tools to latest versions. (#1239) anchore-actions-token-generator[bot] 2022-10-04 10:18:21 +01:00
  • 1fa4bab7a7
    Update Stereoscope to 1b1b744a919964f38d14e1416fb3f25221b761ce (#1240) anchore-actions-token-generator[bot] 2022-10-04 10:17:29 +01:00
  • 4d2f18218c
    fix: Follow symlinks when searching for globs in all-layers scope (#1221) Keith Zantow 2022-09-30 13:01:08 -04:00
  • dd7c654ed0
    update requires to use list; remove field (#1234) Christopher Angelo Phillips 2022-09-30 11:57:13 -04:00
  • b9b13d5525
    Add Conan (C/C++) conan.lock file support (#1230) v0.58.0 Hiroaki KAWAI 2022-09-30 03:45:59 +09:00
  • e6502536a7
    add sequence diagrams and flesh out TODO notes (#1233) Christopher Angelo Phillips 2022-09-28 13:05:49 -04:00
  • 6a40dbf765
    Do not fail if unable to parse .rpm file (#1232) Keith Zantow 2022-09-28 11:26:06 -04:00
  • 16c62a1378
    fix: support exclude patterns on Windows (#1228) Keith Zantow 2022-09-26 10:59:19 -04:00
  • 30e8c4ab8e
    Update syft bootstrap tools to latest versions. (#1225) anchore-actions-token-generator[bot] 2022-09-23 09:26:30 -04:00
  • 911242accc
    Update Stereoscope to 56552770e555d764ea72b99d3c810326b27ead4a (#1224) anchore-actions-token-generator[bot] 2022-09-22 10:44:52 +01:00
  • ab6e1c4dc3
    Update syft bootstrap tools to latest versions. (#1223) anchore-actions-token-generator[bot] 2022-09-22 10:41:36 +01:00
  • 1cfa73732a
    Update syft bootstrap tools to latest versions. (#1220) anchore-actions-token-generator[bot] 2022-09-20 10:28:53 -04:00
  • 04d288b364
    feat: catalog python files for installed-files.txt file metadata (#1217) v0.57.0 Christopher Angelo Phillips 2022-09-19 16:08:02 -04:00
  • c2005fad8d
    Stabilize SPDX JSON output sorting (#1216) Keith Zantow 2022-09-19 15:31:00 -04:00
  • 0f99215b2c
    bug: remove chance for panic; provide default attestation path (#1214) Christopher Angelo Phillips 2022-09-19 11:50:33 -04:00
  • ad263e6562
    refactor: update Makefile organization; update DEVELOPING.md instructions (#1212) Christopher Angelo Phillips 2022-09-19 10:38:12 -04:00
  • b48316742f
    refactor: replace ioutil=>io; update linter (#1211) Christopher Angelo Phillips 2022-09-16 13:58:16 -04:00
  • 0a1cd25ba5
    Update bootstrap tools to latest versions. (#1204) anchore-actions-token-generator[bot] 2022-09-14 15:28:08 -04:00
  • b20310eaf8
    Add gosimports (#1205) Keith Zantow 2022-09-14 13:38:18 -04:00
  • 9097614f3b
    refactor: move formats from internal into syft module (#1172) Chapman Pendery 2022-09-13 08:20:52 -07:00
  • c5dca001e2
    warn on errors from RPM DB parsing (#1200) v0.56.0 Alex Goodman 2022-09-09 14:59:42 -04:00
  • 999994f197
    docs: improve Singularity image source docs (#1190) Adam Hughes 2022-09-07 14:43:38 -04:00
  • 70db13d49e
    Add RPM file scanning support (#1188) Keith Zantow 2022-09-07 14:16:30 -04:00
  • 1c7b7c5f8a
    Normalize syft-json output (#1194) Scott Andrews 2022-09-07 10:56:49 -04:00
  • 586d3fe77f
    Revert "External sources configuration (#1158)" (#1191) Christopher Angelo Phillips 2022-09-01 15:45:35 -04:00
  • 1b0cfe7246
    Update syft bootstrap tools to latest versions. (#1186) anchore-actions-token-generator[bot] 2022-08-31 09:04:45 -04:00
  • a17ff7b555
    Fix RPM DB license handling (#1184) Keith Zantow 2022-08-30 14:38:12 -04:00
  • ccc5a89226
    Update syft bootstrap tools to latest versions. (#1182) anchore-actions-token-generator[bot] 2022-08-30 09:18:36 -04:00
  • a7966a4d9d
    update stereoscope to latest (#1181) v0.55.0 Christopher Angelo Phillips 2022-08-29 15:28:19 -04:00
  • 4ebf6aff86
    Update syft bootstrap tools to latest versions. (#1180) anchore-actions-token-generator[bot] 2022-08-29 10:30:58 -04:00
  • 615f933d98
    Bug fix for 1095 - syft conversion option error (#1177) Christopher Angelo Phillips 2022-08-25 17:36:15 -04:00
  • 2c882f6239
    Update syft bootstrap tools to latest versions. (#1176) anchore-actions-token-generator[bot] 2022-08-25 09:14:24 -04:00
  • 7d4f333ec4
    enhance development support on macOS ARM (#1163) Keith Zantow 2022-08-24 13:48:14 -04:00
  • 5e93d1ea1e
    Capture if a node module is private (#1161) Scott Andrews 2022-08-24 13:07:56 -04:00
  • 57c5413fe0
    Find version numbers from jars with different naming conventions (#1174) Keith Zantow 2022-08-24 12:56:53 -04:00
  • b0fc955e0c
    Update syft bootstrap tools to latest versions. (#1171) anchore-actions-token-generator[bot] 2022-08-23 20:36:59 +01:00
  • 6949a2500f
    Fix update-bootstrap-tools workflow (#1170) Weston Steimel 2022-08-22 16:17:28 +00:00
  • 5282820b5d
    workflow to create automated PRs to update bootstrap tools (#1167) Weston Steimel 2022-08-22 15:28:24 +00:00
  • c56d3b5eef
    feat: add support for licenses in package-lock json v2 (#1164) cpendery 2022-08-22 08:23:44 -07:00
  • 13296880cd
    External sources configuration (#1158) Marco Deicas 2022-08-22 11:22:18 -04:00
  • e9221ae25d
    feat: add support for pnpm (#1166) cpendery 2022-08-22 07:45:55 -07:00
  • f3c3d3d98e
    Prevent symlinks causing duplicate package-file relationships (#1168) Justin Chadwell 2022-08-22 15:29:00 +01:00
  • 21eb772060
    Associate node package licenses from node_modules (#1152) v0.54.0 Keith Zantow 2022-08-16 14:14:02 -04:00
  • d1390b315e
    Give the contributing guide a substantial rework (#1155) Josh Bressers 2022-08-16 09:43:25 -05:00
  • 3db6911865
    fix: extract file ids correctly for spdx-json (#1156) Justin Chadwell 2022-08-11 19:06:36 +01:00
  • 2693a8c19a
    metadata decoding should be optional (#1154) Alex Goodman 2022-08-10 12:20:53 -04:00
  • 1344889766
    Update Stereoscope to 84004345484edb881f1cc1d841115da8abda06c3 (#1151) anchore-actions-token-generator[bot] 2022-08-09 08:59:35 +00:00
  • 04387301ce
    Add modularitylabel metadata to RPM type records generated by syft (#1148) Dan Nurmi 2022-08-08 04:52:32 -07:00
  • 4df84d380d
    Update Stereoscope to 1c79d5c84abcc54466417fcc17c844a4875888a1 (#1149) anchore-actions-token-generator[bot] 2022-08-06 10:52:42 -04:00
  • 5be7e081f5
    retraction for mispublished versions (#1147) Christopher Angelo Phillips 2022-08-06 10:52:21 -04:00
  • 621f0fe082
    cataloger configuration is respected regardless of source (#1142) Tom Fay 2022-08-04 22:14:23 +01:00
  • 644ca00e20
    Update README.md (#1146) Neil Levine 2022-08-04 14:13:28 -07:00
  • fce83321ba
    bump cosign to v1.10.1 (#1144) Weston Steimel 2022-08-04 19:03:57 +00:00
  • 69bde44c6e
    Update stereoscope to get rid of the replace directive (#1140) v0.53.4 Keith Zantow 2022-08-03 12:24:20 -04:00
  • 042304ee4c
    Correct squashfs import and fix incorrect bouncer configuration (#1138) v0.53.3 Christopher Angelo Phillips 2022-08-03 09:46:14 -04:00
  • 69fb0a6f3b
    Overwrite deprecated SPDX licenses automatically (#1009) v0.53.2 Jonas Xavier 2022-08-02 12:25:33 -07:00
  • e68f384063
    disable release for docker assets (#1137) Christopher Angelo Phillips 2022-08-02 14:47:07 -04:00
  • f5d02d4e52
    improve docker release bootstrap (#1136) v0.53.1 Christopher Angelo Phillips 2022-08-02 11:44:24 -04:00
  • d361d40cfa
    Singularity Image Support (#974) Adam Hughes 2022-08-02 11:42:46 -04:00
  • b7f587f5dc
    remove docker login from keychain (#1135) v0.53.0 Christopher Angelo Phillips 2022-08-02 09:42:12 -04:00
  • d196ab70a0
    remove ENV checks from siging script (#1134) Christopher Angelo Phillips 2022-08-01 18:08:41 -04:00
  • 1bf97af3fb
    remove docker assets from main goreleaser configuration to reduce mac-os runner friction (#1133) Christopher Angelo Phillips 2022-08-01 17:08:38 -04:00
  • ca69fb8370
    remove prefixed v from tag to match release (#1131) Christopher Angelo Phillips 2022-08-01 11:07:58 -04:00
  • 8f21180681
    rollback actions-setup-docker to earlier version (#1130) Christopher Angelo Phillips 2022-08-01 10:10:50 -04:00
  • b4c272885d
    Bump go-rustaudit to support rustaudit 0.2.0 (#1127) Tom Fay 2022-08-01 14:20:31 +01:00
  • fb8f24dc1e
    bump bouncer to v0.4.0 (#1125) Weston Steimel 2022-07-29 15:57:59 +00:00
  • f1c5463a6b
    Added ppc64le supported to the syft:debug image (#1124) Mayur Waghmode 2022-07-28 23:48:11 +05:30