Commit Graph

  • 7d2fe9d95e
    feat: add identifiable field to source object (#1243) Christopher Angelo Phillips 2022-10-05 14:01:40 -04:00
  • 40d294a89e
    feat: attest support for Singularity images (#1201) Adam Hughes 2022-10-04 12:34:59 -04:00
  • 91eece47ff
    Update syft bootstrap tools to latest versions. (#1239) anchore-actions-token-generator[bot] 2022-10-04 10:18:21 +01:00
  • 1fa4bab7a7
    Update Stereoscope to 1b1b744a919964f38d14e1416fb3f25221b761ce (#1240) anchore-actions-token-generator[bot] 2022-10-04 10:17:29 +01:00
  • 4d2f18218c
    fix: Follow symlinks when searching for globs in all-layers scope (#1221) Keith Zantow 2022-09-30 13:01:08 -04:00
  • dd7c654ed0
    update requires to use list; remove field (#1234) Christopher Angelo Phillips 2022-09-30 11:57:13 -04:00
  • b9b13d5525
    Add Conan (C/C++) conan.lock file support (#1230) v0.58.0 Hiroaki KAWAI 2022-09-30 03:45:59 +09:00
  • e6502536a7
    add sequence diagrams and flesh out TODO notes (#1233) Christopher Angelo Phillips 2022-09-28 13:05:49 -04:00
  • 6a40dbf765
    Do not fail if unable to parse .rpm file (#1232) Keith Zantow 2022-09-28 11:26:06 -04:00
  • 16c62a1378
    fix: support exclude patterns on Windows (#1228) Keith Zantow 2022-09-26 10:59:19 -04:00
  • 30e8c4ab8e
    Update syft bootstrap tools to latest versions. (#1225) anchore-actions-token-generator[bot] 2022-09-23 09:26:30 -04:00
  • 911242accc
    Update Stereoscope to 56552770e555d764ea72b99d3c810326b27ead4a (#1224) anchore-actions-token-generator[bot] 2022-09-22 10:44:52 +01:00
  • ab6e1c4dc3
    Update syft bootstrap tools to latest versions. (#1223) anchore-actions-token-generator[bot] 2022-09-22 10:41:36 +01:00
  • 1cfa73732a
    Update syft bootstrap tools to latest versions. (#1220) anchore-actions-token-generator[bot] 2022-09-20 10:28:53 -04:00
  • 04d288b364
    feat: catalog python files for installed-files.txt file metadata (#1217) v0.57.0 Christopher Angelo Phillips 2022-09-19 16:08:02 -04:00
  • c2005fad8d
    Stabilize SPDX JSON output sorting (#1216) Keith Zantow 2022-09-19 15:31:00 -04:00
  • 0f99215b2c
    bug: remove chance for panic; provide default attestation path (#1214) Christopher Angelo Phillips 2022-09-19 11:50:33 -04:00
  • ad263e6562
    refactor: update Makefile organization; update DEVELOPING.md instructions (#1212) Christopher Angelo Phillips 2022-09-19 10:38:12 -04:00
  • b48316742f
    refactor: replace ioutil=>io; update linter (#1211) Christopher Angelo Phillips 2022-09-16 13:58:16 -04:00
  • 0a1cd25ba5
    Update bootstrap tools to latest versions. (#1204) anchore-actions-token-generator[bot] 2022-09-14 15:28:08 -04:00
  • b20310eaf8
    Add gosimports (#1205) Keith Zantow 2022-09-14 13:38:18 -04:00
  • 9097614f3b
    refactor: move formats from internal into syft module (#1172) Chapman Pendery 2022-09-13 08:20:52 -07:00
  • c5dca001e2
    warn on errors from RPM DB parsing (#1200) v0.56.0 Alex Goodman 2022-09-09 14:59:42 -04:00
  • 999994f197
    docs: improve Singularity image source docs (#1190) Adam Hughes 2022-09-07 14:43:38 -04:00
  • 70db13d49e
    Add RPM file scanning support (#1188) Keith Zantow 2022-09-07 14:16:30 -04:00
  • 1c7b7c5f8a
    Normalize syft-json output (#1194) Scott Andrews 2022-09-07 10:56:49 -04:00
  • 586d3fe77f
    Revert "External sources configuration (#1158)" (#1191) Christopher Angelo Phillips 2022-09-01 15:45:35 -04:00
  • 1b0cfe7246
    Update syft bootstrap tools to latest versions. (#1186) anchore-actions-token-generator[bot] 2022-08-31 09:04:45 -04:00
  • a17ff7b555
    Fix RPM DB license handling (#1184) Keith Zantow 2022-08-30 14:38:12 -04:00
  • ccc5a89226
    Update syft bootstrap tools to latest versions. (#1182) anchore-actions-token-generator[bot] 2022-08-30 09:18:36 -04:00
  • a7966a4d9d
    update stereoscope to latest (#1181) v0.55.0 Christopher Angelo Phillips 2022-08-29 15:28:19 -04:00
  • 4ebf6aff86
    Update syft bootstrap tools to latest versions. (#1180) anchore-actions-token-generator[bot] 2022-08-29 10:30:58 -04:00
  • 615f933d98
    Bug fix for 1095 - syft conversion option error (#1177) Christopher Angelo Phillips 2022-08-25 17:36:15 -04:00
  • 2c882f6239
    Update syft bootstrap tools to latest versions. (#1176) anchore-actions-token-generator[bot] 2022-08-25 09:14:24 -04:00
  • 7d4f333ec4
    enhance development support on macOS ARM (#1163) Keith Zantow 2022-08-24 13:48:14 -04:00
  • 5e93d1ea1e
    Capture if a node module is private (#1161) Scott Andrews 2022-08-24 13:07:56 -04:00
  • 57c5413fe0
    Find version numbers from jars with different naming conventions (#1174) Keith Zantow 2022-08-24 12:56:53 -04:00
  • b0fc955e0c
    Update syft bootstrap tools to latest versions. (#1171) anchore-actions-token-generator[bot] 2022-08-23 20:36:59 +01:00
  • 6949a2500f
    Fix update-bootstrap-tools workflow (#1170) Weston Steimel 2022-08-22 16:17:28 +00:00
  • 5282820b5d
    workflow to create automated PRs to update bootstrap tools (#1167) Weston Steimel 2022-08-22 15:28:24 +00:00
  • c56d3b5eef
    feat: add support for licenses in package-lock json v2 (#1164) cpendery 2022-08-22 08:23:44 -07:00
  • 13296880cd
    External sources configuration (#1158) Marco Deicas 2022-08-22 11:22:18 -04:00
  • e9221ae25d
    feat: add support for pnpm (#1166) cpendery 2022-08-22 07:45:55 -07:00
  • f3c3d3d98e
    Prevent symlinks causing duplicate package-file relationships (#1168) Justin Chadwell 2022-08-22 15:29:00 +01:00
  • 21eb772060
    Associate node package licenses from node_modules (#1152) v0.54.0 Keith Zantow 2022-08-16 14:14:02 -04:00
  • d1390b315e
    Give the contributing guide a substantial rework (#1155) Josh Bressers 2022-08-16 09:43:25 -05:00
  • 3db6911865
    fix: extract file ids correctly for spdx-json (#1156) Justin Chadwell 2022-08-11 19:06:36 +01:00
  • 2693a8c19a
    metadata decoding should be optional (#1154) Alex Goodman 2022-08-10 12:20:53 -04:00
  • 1344889766
    Update Stereoscope to 84004345484edb881f1cc1d841115da8abda06c3 (#1151) anchore-actions-token-generator[bot] 2022-08-09 08:59:35 +00:00
  • 04387301ce
    Add modularitylabel metadata to RPM type records generated by syft (#1148) Dan Nurmi 2022-08-08 04:52:32 -07:00
  • 4df84d380d
    Update Stereoscope to 1c79d5c84abcc54466417fcc17c844a4875888a1 (#1149) anchore-actions-token-generator[bot] 2022-08-06 10:52:42 -04:00
  • 5be7e081f5
    retraction for mispublished versions (#1147) Christopher Angelo Phillips 2022-08-06 10:52:21 -04:00
  • 621f0fe082
    cataloger configuration is respected regardless of source (#1142) Tom Fay 2022-08-04 22:14:23 +01:00
  • 644ca00e20
    Update README.md (#1146) Neil Levine 2022-08-04 14:13:28 -07:00
  • fce83321ba
    bump cosign to v1.10.1 (#1144) Weston Steimel 2022-08-04 19:03:57 +00:00
  • 69bde44c6e
    Update stereoscope to get rid of the replace directive (#1140) v0.53.4 Keith Zantow 2022-08-03 12:24:20 -04:00
  • 042304ee4c
    Correct squashfs import and fix incorrect bouncer configuration (#1138) v0.53.3 Christopher Angelo Phillips 2022-08-03 09:46:14 -04:00
  • 69fb0a6f3b
    Overwrite deprecated SPDX licenses automatically (#1009) v0.53.2 Jonas Xavier 2022-08-02 12:25:33 -07:00
  • e68f384063
    disable release for docker assets (#1137) Christopher Angelo Phillips 2022-08-02 14:47:07 -04:00
  • f5d02d4e52
    improve docker release bootstrap (#1136) v0.53.1 Christopher Angelo Phillips 2022-08-02 11:44:24 -04:00
  • d361d40cfa
    Singularity Image Support (#974) Adam Hughes 2022-08-02 11:42:46 -04:00
  • b7f587f5dc
    remove docker login from keychain (#1135) v0.53.0 Christopher Angelo Phillips 2022-08-02 09:42:12 -04:00
  • d196ab70a0
    remove ENV checks from siging script (#1134) Christopher Angelo Phillips 2022-08-01 18:08:41 -04:00
  • 1bf97af3fb
    remove docker assets from main goreleaser configuration to reduce mac-os runner friction (#1133) Christopher Angelo Phillips 2022-08-01 17:08:38 -04:00
  • ca69fb8370
    remove prefixed v from tag to match release (#1131) Christopher Angelo Phillips 2022-08-01 11:07:58 -04:00
  • 8f21180681
    rollback actions-setup-docker to earlier version (#1130) Christopher Angelo Phillips 2022-08-01 10:10:50 -04:00
  • b4c272885d
    Bump go-rustaudit to support rustaudit 0.2.0 (#1127) Tom Fay 2022-08-01 14:20:31 +01:00
  • fb8f24dc1e
    bump bouncer to v0.4.0 (#1125) Weston Steimel 2022-07-29 15:57:59 +00:00
  • f1c5463a6b
    Added ppc64le supported to the syft:debug image (#1124) Mayur Waghmode 2022-07-28 23:48:11 +05:30
  • 9896ff1b1f
    add a cataloger for binaries built with rust-audit (#1116) Tom Fay 2022-07-28 19:17:38 +01:00
  • 62897fbc89
    bump goreleaser to v1.10.3 (#1123) Weston Steimel 2022-07-28 17:10:32 +00:00
  • d1729ee7e2
    bump golangci-lint to v1.47.2 (#1122) Weston Steimel 2022-07-28 13:40:53 +00:00
  • 43715d380b
    bump cosign in bootstrap-tools to v1.10.0 (#1121) Weston Steimel 2022-07-28 13:40:42 +00:00
  • af330c8a37
    Added s390x support (#1117) Mayur Waghmode 2022-07-28 02:03:54 +05:30
  • 20ad59ad1b
    Delete pr_action.yaml (#1120) Christopher Angelo Phillips 2022-07-27 13:12:00 -04:00
  • 8235e8e581
    fix: use generic instead of not generating purl (#1119) cpendery 2022-07-27 09:06:37 -04:00
  • b720a3c81c
    bump cosign to v1.10.0 (#1114) Weston Steimel 2022-07-22 13:41:38 +00:00
  • ba9adb17eb
    Update sigstore/rekor dependency (#1112) v0.52.0 Marco Deicas 2022-07-21 09:17:16 -04:00
  • 51727fcf2d
    Added ppc64le support (#1099) Mayur Waghmode 2022-07-21 18:42:52 +05:30
  • 5dc729b67e
    patch-distroless-ghcr (#1110) Christopher Angelo Phillips 2022-07-20 16:51:49 -04:00
  • 7bae9d4b4e
    add distroless debug image to published release (#1106) Christopher Angelo Phillips 2022-07-20 11:54:46 -04:00
  • 571de3602a
    update help formatting (#1105) Christopher Angelo Phillips 2022-07-19 10:46:48 -04:00
  • 9b1adce19a
    feat: implement haskell support (#1096) cpendery 2022-07-18 15:33:54 -04:00
  • 00e12329d0
    Add the -r argument for gnu xargs (#1103) Josh Bressers 2022-07-18 07:45:37 -05:00
  • 922663c987
    fix: -o output option to include formats (#1102) cpendery 2022-07-15 09:55:15 -04:00
  • 64b4852c2a
    moves go-rpmdb to latest; libc => v1.16.7 (#1098) Christopher Angelo Phillips 2022-07-12 10:30:21 -04:00
  • 470b13045b
    feat: add support for cocoapods (Swift/Objective-C) (#1081) v0.51.0 cpendery 2022-07-11 10:09:08 -04:00
  • 2f1aa33ce8
    Fix package url for Go modules with no / (#1092) Rob Best 2022-07-11 15:07:34 +01:00
  • b3a7b912e1
    Update Stereoscope to 777471f38c5b2f15c19d6cffe093ce6392d8040c (#1090) anchore-actions-token-generator[bot] 2022-07-11 09:42:59 -04:00
  • 5206193b23
    feat: output attestation to file (#1087) Batuhan Apaydın 2022-07-08 20:05:20 +03:00
  • c7fa498a1b
    Update Stereoscope to cfbd966e5a8d11d73cd17adc8b8ab8468a086f1e (#1089) anchore-actions-token-generator[bot] 2022-07-07 10:05:55 -04:00
  • 4c55c62834
    Add portage support for Gentoo Linux (#1076) Zac Medico 2022-07-06 13:18:54 -07:00
  • ba685eada8
    Add PR action back to workflow with new token (#1086) Christopher Angelo Phillips 2022-07-06 09:31:51 -04:00
  • 69134ed3b5
    feat: add new login cmd (#1068) v0.50.0 Batuhan Apaydın 2022-07-05 18:57:28 +03:00
  • 47df66960f
    update AltRpmDbGlob with comment and context (#1085) Christopher Angelo Phillips 2022-07-05 11:29:31 -04:00
  • 57323a1666
    feat: add support for conan packages (C/C++) (#1083) cpendery 2022-07-05 10:49:24 -04:00
  • 6b28a46ebe
    add golang main module and pseudo-version (#916) Jonas Xavier 2022-07-01 10:01:57 -07:00
  • 3ae728ede1
    fix: add glob to filter list to ensure rpm metadata files are matched… (#1079) Dan Nurmi 2022-06-30 16:50:24 -07:00
  • 3ce1a4aac1
    remove pr automation until service account creation (#1080) Christopher Angelo Phillips 2022-06-30 17:43:24 -04:00
  • bc054e4724
    fix: purl generation for pom.xml (#1078) cpendery 2022-06-30 10:31:36 -04:00