Commit Graph

  • 91e2fd8532
    Fix potential race condition during event subscription (#993) v0.46.0 Keith Zantow 2022-05-11 18:35:55 -04:00
  • 24f08e7738
    Convert between SBOM formats (#964) Jonas Xavier 2022-05-09 17:28:33 -07:00
  • a83506628c
    Add README updates for Keyless features (#988) Christopher Angelo Phillips 2022-05-09 12:07:28 -04:00
  • 42f8601919
    Fix tests: add timeout to long-running failures, update SPDX license list (#989) Jonas Xavier 2022-05-09 08:48:44 -07:00
  • d2d532f4a8
    835 - Keyless Support for SBOM Attestations (#910) Christopher Angelo Phillips 2022-05-06 18:06:32 -04:00
  • 1cea0ecd5c
    feat: add initial dotnet-support (#951) Christian Kotzbauer 2022-05-05 21:32:02 +02:00
  • d2f053bc71
    unblock timeout for power-user select CLI tests (#985) Alex Goodman 2022-05-05 11:12:11 -04:00
  • 2fc344aba4
    golang cataloger - main module version as is (#986) Jonas Xavier 2022-05-05 00:01:00 -07:00
  • 8b6c576d78
    Fix github-json output option (#967) Steven Maude 2022-05-05 01:25:40 +01:00
  • ab289933da
    read Go main module version as is - (devel) (#981) Jonas Xavier 2022-05-04 10:47:13 -07:00
  • 37927b8b23
    reduce logging severity for non-Go binaries (#983) v0.45.1 Dan Luhring 2022-05-03 09:38:14 -04:00
  • 03d51c36d0
    golang.org/x/crypto upgrade (#979) Christopher Angelo Phillips 2022-05-02 17:33:40 -04:00
  • 0bd3558fb2
    reduce noise of log output (#976) Dan Luhring 2022-05-02 10:54:30 -04:00
  • 4ce2edda9e
    add version info and remove double config call (#977) Christopher Angelo Phillips 2022-05-02 10:54:10 -04:00
  • 36973021fa
    Rename syft-id to package-id (#970) v0.45.0 Sambhav Kothari 2022-04-29 16:18:45 +01:00
  • 7d8ea39ee5
    update to cyclonedx-go 0.5.2 (#971) Christian Köberl 2022-04-28 16:42:12 +02:00
  • 6029dd7c2e
    refactor command package to remove globals and add dependency injection Christopher Angelo Phillips 2022-04-26 14:23:03 -04:00
  • 7304bbf8ee
    fix: #953 Derive language from pURL - https://github.com/anchore/syft… (#957) Jon McEwen 2022-04-26 16:51:24 +01:00
  • c270ee2a02
    Fix typo in CPE-parsing error (#966) Rob Dimsdale-Zucker 2022-04-22 12:08:44 -04:00
  • 172ecc0d77
    Preserve syft IDs on SBOM decode (#963) Alex Goodman 2022-04-18 14:10:55 -04:00
  • 248023baaf
    Update GitHub format package_url and correlator (#961) v0.44.1 Keith Zantow 2022-04-15 13:00:06 -04:00
  • b7295b79de
    Ensure SPDXIDs are valid (#955) Keith Zantow 2022-04-14 15:07:23 -04:00
  • 321eddf874
    Auto-PR needs to run go mod tidy (#958) Keith Zantow 2022-04-13 16:30:35 -04:00
  • 25bf679f8f
    Add workflow for automatic PR for new stereoscope updates (#954) Keith Zantow 2022-04-13 13:20:40 -04:00
  • 02a8fb6f8c
    Minor readme update to correct format information (#948) Keith Zantow 2022-04-12 17:16:47 -04:00
  • b46d044d7e
    Update spdx22json to only take uppercase checksum algorithm (#946) v0.44.0 Christopher Angelo Phillips 2022-04-11 14:56:04 -04:00
  • 15e45a8ce1
    add additional vendors for springframework (#945) Weston Steimel 2022-04-11 13:38:52 +00:00
  • 782b2e3348
    Add digest property to parent and nested java package metadata (#941) Christopher Angelo Phillips 2022-04-08 15:12:32 -04:00
  • 1c2254f5cf
    hide digests for rpm dirs hide-digest-for-dirs Alex Goodman 2022-04-08 08:57:59 -04:00
  • e415bb21e7
    Update write permissions and log into ghcr.io for release (#942) v0.43.2 Alex Goodman 2022-04-06 17:15:55 -04:00
  • 748cfbf006
    Retry auth URL lookup without docker credentialhelper workaround (#939) v0.43.1 Alex Goodman 2022-04-06 12:27:13 -04:00
  • 078dbedfb6
    separate CPE definitions from capabilities Alex Goodman 2022-04-02 00:05:25 -04:00
  • 8bc5d84481
    Ensure that all cyclonedx components have bom-refs (#914) Sambhav Kothari 2022-04-01 17:19:30 +01:00
  • 68b7ad9770
    Additionally publish docker images to GHCR (#934) Alex Goodman 2022-04-01 11:30:21 -04:00
  • 1aeda6bb50
    use filepath.Base() instead of path.Base() for temp files (#882) Oscar Hallgren 2022-04-01 16:42:22 +02:00
  • f24bbc1838
    Deduplicate packages across multiple container image layers (#930) v0.43.0 Alex Goodman 2022-03-31 15:45:51 -04:00
  • cb3e73e308
    Add dart support (#919) Eric Larssen 2022-03-31 14:44:55 -05:00
  • f157d7a862
    Pull from DockerHub fails for public images when using SSO (#928) Alex Goodman 2022-03-30 13:32:49 -04:00
  • 028cd9e27e
    Fix nil pointer dereference in directory resolver's indexPath method (#924) Dan Luhring 2022-03-28 13:15:09 -04:00
  • 5549939cc6
    Fixups and clarifications in README (#920) Dan Luhring 2022-03-25 11:36:43 -04:00
  • 47ea910868
    Remove announcement for OSS Meetup (#915) briankoe741 2022-03-24 19:17:14 -05:00
  • a7db43f5ec
    Fix panic on empty sbom (#917) v0.42.4 Dan Luhring 2022-03-24 10:11:51 -04:00
  • cc2c0e57a0
    bump strset version to fix 386 builds (#911) v0.42.3 Alex Goodman 2022-03-23 14:34:54 -04:00
  • 5253da4b36
    Rollback referencing docker config items (#912) Alex Goodman 2022-03-23 14:33:41 -04:00
  • 9f60d32369
    migrate source.FileResolver to the file package Alex Goodman 2022-03-22 20:50:05 -04:00
  • a3dc0fa97d
    rename location.VirtualPath to AccessPath Alex Goodman 2022-03-22 18:24:50 -04:00
  • f999604a29
    migrate location and file metadata to the file package Alex Goodman 2022-03-22 18:21:35 -04:00
  • a49c7e3c53
    migrate filename glob helpers to internal Alex Goodman 2022-03-22 17:41:02 -04:00
  • b3ca75646c
    keep file catalogers separate from file-related definitions Alex Goodman 2022-03-22 17:18:36 -04:00
  • 3308079158
    export event monitor structs but not behavior Alex Goodman 2022-03-22 16:05:45 -04:00
  • c0b547bdb2
    Less verbose logging in Golang Cataloger (#904) v0.42.2 Jonas Xavier 2022-03-22 10:19:18 -07:00
  • cffcaf5984
    Improve docker config support (#906) Alex Goodman 2022-03-22 11:02:54 -04:00
  • 7f9edf346a
    Bump golangci-lint to 1.45.0 (#909) Alex Goodman 2022-03-22 11:02:36 -04:00
  • 1279bd0b08
    add additional package catalger append option Alex Goodman 2022-03-22 10:48:16 -04:00
  • a644a45ef4
    Correct go.mod to enforce go 1.18 (#897) j-k 2022-03-21 19:38:32 +00:00
  • 283db88dc4
    Omit H1Digest when empty (#902) v0.42.1 Jonas Xavier 2022-03-21 11:59:10 -07:00
  • 03e193e577
    Add platform option to the README (#889) Alex Goodman 2022-03-21 12:02:15 -04:00
  • 069aa68b63
    Fix image cleanup when there is an error (#905) Alex Goodman 2022-03-21 10:48:11 -04:00
  • 9240860f44
    Correct ID handling during Syft JSON decoding (#900) Keith Zantow 2022-03-18 17:03:26 -04:00
  • 4231f38fa2
    add case to decode GolangBinMetadata for syftjson model (#901) Christopher Angelo Phillips 2022-03-18 15:15:10 -04:00
  • 752b03b2d6
    Remove commit signing requirement (#899) Dan Luhring 2022-03-18 12:48:00 -04:00
  • 99c3339810
    Fix CycloneDX license decoding panic (#898) Keith Zantow 2022-03-18 09:44:51 -04:00
  • f4734d28b3
    Fix panic when CycloneDX BOM missing metadata.component (#895) v0.42.0 Keith Zantow 2022-03-17 10:22:35 -04:00
  • 6ef3e45ffc
    Use go 1.18 buildinfo to catalog binaries (#827) Jonas Xavier 2022-03-16 17:07:02 -07:00
  • ee0a1d172c
    panic parsing cyclonedx (#892) v0.41.6 Keith Zantow 2022-03-16 09:10:44 -04:00
  • b9b3ccecf9
    Update register link text (#891) v0.41.5 Keith Zantow 2022-03-15 13:02:33 -04:00
  • 95271fb10d
    NPM PURLs are invalid (#832) mikey strauss 2022-03-15 17:54:33 +02:00
  • 93d2d57cd3
    update README with OSS Meetup information (#890) Christopher Angelo Phillips 2022-03-15 11:37:56 -04:00
  • 7cd3201fe9
    Support the .be top-level domain (#873) Kenny Moens 2022-03-15 15:59:13 +01:00
  • f89f58b825
    change package cataloger option name Alex Goodman 2022-03-14 12:54:37 -04:00
  • a70cfa6dd7
    migrate cataloging config to separate source file Alex Goodman 2022-03-14 12:30:08 -04:00
  • 3323ce2b6b
    [wip] api refactor Alex Goodman 2022-03-11 21:11:59 -05:00
  • c7cf8b0b26
    Brew install gon failed (#885) v0.41.4 v0.41.3 Keith Zantow 2022-03-11 13:17:57 -05:00
  • 44a6e00f7a
    Include vendored modules in Go Module package list (#883) Frankie G-J 2022-03-11 12:57:33 -05:00
  • 6c8102bf28
    Correct CycloneDX distro decoding (#745) Keith Zantow 2022-03-11 09:27:18 -05:00
  • 7789506dc6
    Experimental GitHub export (#836) v0.41.2 Keith Zantow 2022-03-10 22:38:12 -05:00
  • fa03723617
    Upgrade vault api from v1.3.1 to v1.4.1 (#878) Christopher Angelo Phillips 2022-03-09 15:11:07 -05:00
  • 2946813a74
    RPM Epoch should be optional in the json schema (#880) Alex Goodman 2022-03-09 14:51:43 -05:00
  • 003d28ad48
    Add SchemaVersion to version command output (#877) Christopher Angelo Phillips 2022-03-09 13:12:52 -05:00
  • 9d9669e62f
    Add artifacthub owner (#876) Alex Goodman 2022-03-09 07:50:31 -05:00
  • 39737a2825
    Update cyclonedx to v1.4 (#820) Sambhav Kothari 2022-03-08 17:09:55 +00:00
  • f2617285d0
    Update yarn.lock parser to support latest (berry v3) format (#868) cipher-ardvark 2022-03-08 09:07:54 -08:00
  • 07d3c9af52
    Fix file creation for output options (#875) v0.41.1 Alex Goodman 2022-03-08 10:37:28 -05:00
  • 5123f073c7
    Update containerd via stereoscope (#870) v0.41.0 Alex Goodman 2022-03-07 12:37:20 -05:00
  • 991af0d857
    Include root path in directory resolve index (#869) Alex Goodman 2022-03-07 11:34:16 -05:00
  • a90cff9ae1
    simplify yarn test expressions yarn-tests Alex Goodman 2022-03-07 08:50:20 -05:00
  • 7b3cc85219 update yarn.lock parser to support yarn berry Patrick Glass 2022-03-06 21:50:18 -08:00
  • 913bdda8df add test cases for yarn parser regex Patrick Glass 2022-03-06 19:22:35 -08:00
  • a86dd3704e
    Add platform selection (#866) Alex Goodman 2022-03-04 17:41:38 -05:00
  • 4af32c5bee
    Migrate format definitions to sbom package (#864) Alex Goodman 2022-03-04 17:22:40 -05:00
  • 640099ce2e
    tiny aligment fix in example template (#867) Jonas Xavier 2022-03-04 09:34:05 -08:00
  • b2ab4671b9
    Correct SPDX-JSON checksum algorithm (#863) v0.40.1 Keith Zantow 2022-03-03 17:13:13 -05:00
  • ad322b3314
    bump error language and remove panic (#862) Christopher Angelo Phillips 2022-03-03 10:37:18 -05:00
  • 4a8a9ce290
    add podman scheme to doc examples (#860) Jonas Xavier 2022-03-02 14:39:05 -08:00
  • 635904fcb6
    Reduce PR check failures (#858) Alex Goodman 2022-03-02 12:51:37 -05:00
  • 1e75cb0418
    Update to cosign v1.5.2 (#857) v0.40.0 Dan Luhring 2022-03-02 10:09:47 -05:00
  • afc0c1acd9
    855 attest registry source only (#856) Christopher Angelo Phillips 2022-03-01 23:16:42 -05:00
  • edac8c7bf7
    Update CycloneDX to use syft namespace and output multiple CPEs (#849) Keith Zantow 2022-03-01 17:37:52 -05:00
  • d2f28e0eb1
    Restore single goreleaser file (#853) Alex Goodman 2022-02-28 09:46:41 -05:00
  • 1d1a7de314
    Fix goreleaser generated config path (#852) v0.39.3 Alex Goodman 2022-02-26 07:30:38 -05:00