Commit Graph

  • 1df4779b48
    chore(deps): bump golang.org/x/mod from 0.27.0 to 0.28.0 (#4198) dependabot[bot] 2025-09-08 09:50:09 -04:00
  • 3a7f1f27a6
    chore(deps): bump github.com/spf13/cobra from 1.9.1 to 1.10.1 (#4182) dependabot[bot] 2025-09-08 02:36:59 -04:00
  • 8e78fd57b8
    chore(deps): bump actions/setup-go from 5.5.0 to 6.0.0 (#4188) dependabot[bot] 2025-09-08 02:35:22 -04:00
  • b503690889
    chore(deps): bump actions/setup-go in /.github/actions/bootstrap (#4189) dependabot[bot] 2025-09-08 02:35:08 -04:00
  • cc07df0347
    chore(deps): bump github.com/hashicorp/go-getter from 1.7.9 to 1.7.10 (#4190) dependabot[bot] 2025-09-08 02:05:46 -04:00
  • 2b8f4bc028
    chore(deps): bump github/codeql-action from 3.30.0 to 3.30.1 (#4191) dependabot[bot] 2025-09-08 02:05:35 -04:00
  • 98c97e24a2
    chore(deps): bump actions/github-script from 7 to 8 (#4192) dependabot[bot] 2025-09-08 02:05:27 -04:00
  • 6f4da8c797
    chore(deps): bump github.com/stretchr/testify from 1.11.0 to 1.11.1 (#4173) dependabot[bot] 2025-09-03 12:22:38 -04:00
  • 647196055d
    chore(deps): update tools to latest versions (#4185) anchore-actions-token-generator[bot] 2025-09-03 12:22:11 -04:00
  • 39441f1999
    chore(deps): bump github.com/ulikunitz/xz from 0.5.12 to 0.5.14 (#4178) dependabot[bot] 2025-09-02 00:26:54 -04:00
  • 507987c193
    chore(deps): bump github.com/spf13/cobra from 1.9.1 to 1.10.0 (#4180) dependabot[bot] 2025-09-02 00:26:42 -04:00
  • 7e4bf7f8c2
    chore(deps): bump github/codeql-action from 3.29.11 to 3.30.0 (#4181) dependabot[bot] 2025-09-02 00:26:33 -04:00
  • bc18e3ab8c
    chore(deps): bump github.com/anchore/stereoscope (#4174) dependabot[bot] 2025-08-28 13:43:20 -04:00
  • c4eb071324
    chore(deps): bump github.com/gookit/color from 1.5.4 to 1.6.0 (#4176) dependabot[bot] 2025-08-28 13:42:38 -04:00
  • cbcf8bd542
    chore(deps): bump golang.org/x/tools from 0.35.0 to 0.36.0 (#4172) dependabot[bot] 2025-08-27 13:09:28 -04:00
  • d7d690a3ad Add llms.txt to describe this repo to our AI overlords 🤖 add-llms-txt Alan Pope 2025-08-27 14:40:53 +01:00
  • 66bf43c0cc
    test: java binary skip for apple Silicon java-binary-skip-apple Christopher Phillips 2025-08-26 17:57:21 -04:00
  • 2d8e337d34
    chore(deps): update anchore dependencies (#4169) v1.32.0 anchore-actions-token-generator[bot] 2025-08-26 17:04:20 -04:00
  • 13ffeeb3d0
    feat: combine go module file and go source discovery into single cataloger (#4127) Christopher Angelo Phillips 2025-08-26 15:35:44 -04:00
  • 170c4c41f4
    use go.yaml.in/yaml (#4157) n-bes 2025-08-26 18:24:23 +03:00
  • 91c5c850ea Fix go fmt issue in static analysis add-csproj-cataloger Alan Pope 2025-08-26 16:02:04 +01:00
  • 42c6259d4b chore(deps): bump github.com/diskfs/go-diskfs (#4159) dependabot[bot] 2025-08-26 09:00:02 -04:00
  • abed9f2d5f chore(deps): bump github.com/stretchr/testify from 1.10.0 to 1.11.0 (#4160) dependabot[bot] 2025-08-26 08:59:49 -04:00
  • e4f4aa2956 resolve issue with incorrect test fixture content Alan Pope 2025-08-26 15:08:43 +01:00
  • 7dc7c01c5c
    chore(deps): bump github.com/diskfs/go-diskfs (#4159) dependabot[bot] 2025-08-26 09:00:02 -04:00
  • 9f07fa4a68
    chore(deps): bump github.com/stretchr/testify from 1.10.0 to 1.11.0 (#4160) dependabot[bot] 2025-08-26 08:59:49 -04:00
  • 0afe26152f fix issue with parsing variables in csproj files Alan Pope 2025-08-26 13:48:42 +01:00
  • dd0e7dc20f tweaks to improve performance, coverage and filtering Alan Pope 2025-08-26 13:07:55 +01:00
  • e5fd03d2f6 First pass at cataloging .csproj files Alan Pope 2025-08-26 12:01:11 +01:00
  • 37b2c0391b
    chore(deps): update tools to latest versions (#4154) anchore-actions-token-generator[bot] 2025-08-25 09:57:45 -04:00
  • ada74a8121
    Feature: Add ffmpeg binary cataloger (#3994) Alan Pope 2025-08-25 12:50:04 +01:00
  • ca21ccf21d
    chore: redhat cataloger error when sqlite not regsitered (#4150) Keith Zantow 2025-08-21 10:55:47 -04:00
  • 26792fc12d
    chore(deps): bump github/codeql-action from 3.29.10 to 3.29.11 (#4149) dependabot[bot] 2025-08-21 10:43:25 -04:00
  • a433045d51
    feat: basic Conda ecosystem support (#4002) Simeon Stoykov 2025-08-20 05:37:27 +03:00
  • 8e51e8d995
    chore(deps): bump github/codeql-action from 3.29.9 to 3.29.10 (#4145) dependabot[bot] 2025-08-18 15:29:36 -04:00
  • ba2eb5701f
    chore(deps): update CPE dictionary index (#4143) anchore-actions-token-generator[bot] 2025-08-18 10:14:39 -04:00
  • c4292ad79b
    chore(deps): bump github.com/hashicorp/go-getter from 1.7.8 to 1.7.9 (#4144) dependabot[bot] 2025-08-18 11:42:13 +01:00
  • 0e669faecd
    chore(deps): bump anchore/sbom-action from 0.20.4 to 0.20.5 (#4141) dependabot[bot] 2025-08-15 10:22:24 -04:00
  • 10ea022fe7
    chore(deps): update tools to latest versions (#4139) anchore-actions-token-generator[bot] 2025-08-14 13:34:24 -04:00
  • 87e1d8cb87
    feat: add support for authors, maintainers, and contributors in package.json. (#4003) Alan Pope 2025-08-13 22:55:15 +01:00
  • ab9db0024e
    chore(deps): bump zizmorcore/zizmor-action from 0.1.1 to 0.1.2 (#4135) v1.31.0 dependabot[bot] 2025-08-13 10:07:03 -04:00
  • 6b48bd4b5e
    feat: add package supplier flag (#4131) Christopher Angelo Phillips 2025-08-12 14:49:41 -04:00
  • 89470ecdd3
    feat: update syft license construction to be able to look up by URL (#4132) Christopher Angelo Phillips 2025-08-12 14:30:32 -04:00
  • 104df88143
    chore(deps): bump github/codeql-action from 3.29.8 to 3.29.9 (#4134) dependabot[bot] 2025-08-12 18:23:39 +00:00
  • 80e61175ad
    fix: support multiple letters in openssl patch version (#4106) honigbot 2025-08-12 16:30:41 +02:00
  • 9f956dca8f
    fix: closed reader during java binary detection (#4129) Keith Zantow 2025-08-12 08:58:28 -04:00
  • 6452a19009
    chore(deps): bump actions/checkout from 4.2.2 to 5.0.0 (#4130) dependabot[bot] 2025-08-11 16:54:59 -04:00
  • 21496e7a81
    chore: update GoReleaser configurations (#4128) Emmanuel Ferdman 2025-08-11 16:38:33 +03:00
  • 3e5befc267
    chore(deps): update CPE dictionary index (#4126) anchore-actions-token-generator[bot] 2025-08-10 23:48:24 -04:00
  • 49736e7c4a
    chore(deps): bump golang.org/x/net from 0.42.0 to 0.43.0 (#4122) v1.30.0 dependabot[bot] 2025-08-08 17:51:06 +00:00
  • 7a9e1e06da
    chore(deps): bump golang.org/x/mod from 0.26.0 to 0.27.0 (#4123) dependabot[bot] 2025-08-08 13:35:44 -04:00
  • 7b92913a00
    chore(deps): bump github/codeql-action from 3.29.7 to 3.29.8 (#4124) dependabot[bot] 2025-08-08 13:35:35 -04:00
  • 594b309cdf
    feat: add binary classifier for hashicorp vault (#4121) Will Murphy 2025-08-08 13:26:15 -04:00
  • 8c6a2bcbb6
    fix: nondeterministic Java archive cataloging and improve groupID (#4118) Keith Zantow 2025-08-07 10:55:10 -04:00
  • d4d311155f
    chore(deps): bump docker/login-action from 3.4.0 to 3.5.0 (#4115) dependabot[bot] 2025-08-07 10:48:53 -04:00
  • 118f564cf3
    chore(deps): bump actions/cache from 4.2.3 to 4.2.4 (#4119) dependabot[bot] 2025-08-07 10:47:40 -04:00
  • b59c902996
    chore(deps): bump actions/cache in /.github/actions/bootstrap (#4120) dependabot[bot] 2025-08-07 10:47:25 -04:00
  • fad9340051
    chore(deps): update tools to latest versions (#4111) anchore-actions-token-generator[bot] 2025-08-04 11:20:26 -04:00
  • 3820cba0cd
    chore(deps): update CPE dictionary index (#4112) anchore-actions-token-generator[bot] 2025-08-04 11:20:09 -04:00
  • 5af72b6663
    chore(deps): update tools to latest versions (#4108) anchore-actions-token-generator[bot] 2025-07-31 12:04:54 -04:00
  • 801b21bb37
    chore(deps): bump github/codeql-action from 3.29.4 to 3.29.5 (#4096) dependabot[bot] 2025-07-30 14:29:07 -04:00
  • 386ef842d9
    chore(deps): update anchore dependencies (#4104) v1.29.1 anchore-actions-token-generator[bot] 2025-07-30 17:41:35 +00:00
  • bd79463e77
    chore(deps): update anchore dependencies (#4098) anchore-actions-token-generator[bot] 2025-07-30 17:23:07 +00:00
  • 8a7302c5cf
    migrate to get.anchore.io (#4095) Alex Goodman 2025-07-30 10:54:22 -04:00
  • 28ba092375
    chore(deps): bump github.com/anchore/stereoscope (#4091) dependabot[bot] 2025-07-30 09:12:55 -04:00
  • fa68af468d
    chore(deps): bump github.com/docker/docker (#4092) dependabot[bot] 2025-07-29 16:29:03 -04:00
  • 700a777356
    chore(deps): bump modernc.org/sqlite from 1.38.1 to 1.38.2 (#4088) dependabot[bot] 2025-07-29 10:29:57 -04:00
  • 71aa59a210
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.13 to 0.5.14 (#4089) dependabot[bot] 2025-07-29 10:29:45 -04:00
  • d0d9c6a8e5
    chore(deps): bump github.com/bmatcuk/doublestar/v4 from 4.9.0 to 4.9.1 (#4087) dependabot[bot] 2025-07-28 13:39:36 -04:00
  • 702b4358e9
    chore(deps): bump github.com/olekukonko/tablewriter from 1.0.8 to 1.0.9 (#4086) dependabot[bot] 2025-07-28 13:39:22 -04:00
  • 4a69c00c23
    chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.6.7 to 6.6.8 (#4085) dependabot[bot] 2025-07-28 13:39:06 -04:00
  • 998742f38e
    chore(deps): bump modernc.org/sqlite from 1.38.0 to 1.38.1 (#4084) dependabot[bot] 2025-07-28 17:38:42 +00:00
  • bb8ea024e1
    chore(deps): update tools to latest versions (#4082) anchore-actions-token-generator[bot] 2025-07-28 12:01:09 -04:00
  • 3f28480b3d
    chore(deps): update CPE dictionary index (#4083) anchore-actions-token-generator[bot] 2025-07-28 10:51:16 -04:00
  • 5465bf4227
    chore(deps): update tools to latest versions (#4079) anchore-actions-token-generator[bot] 2025-07-24 15:18:12 -04:00
  • 8b2c4a134e
    chore(deps): bump github/codeql-action from 3.29.3 to 3.29.4 (#4080) dependabot[bot] 2025-07-24 15:17:49 -04:00
  • d7046099e9
    chore(deps): update tools to latest versions (#4076) anchore-actions-token-generator[bot] 2025-07-23 21:03:20 -04:00
  • f0a990b85f
    chore: add source completion tester (#4077) Alex Goodman 2025-07-23 09:49:47 -04:00
  • 48bf81cf7f
    fix: align binary java detection with jvm cataloger + support IBM (#4046) Keith Zantow 2025-07-22 12:06:32 -04:00
  • 78c7cd2cc2
    chore(deps): update tools to latest versions (#4072) anchore-actions-token-generator[bot] 2025-07-22 09:49:58 -04:00
  • a192787d44
    chore(deps): bump github/codeql-action from 3.29.2 to 3.29.3 (#4074) dependabot[bot] 2025-07-22 09:49:43 -04:00
  • d5a562c368
    chore(deps): bump anchore/sbom-action from 0.20.2 to 0.20.4 (#4073) dependabot[bot] 2025-07-22 09:49:40 -04:00
  • 6f36b586ba
    chore: update release workflow to persist credentials for git tag step (#4069) v1.29.0 Christopher Angelo Phillips 2025-07-21 15:23:14 -04:00
  • a620baff90
    chore(deps): update anchore dependencies (#4068) anchore-actions-token-generator[bot] 2025-07-21 14:12:47 -04:00
  • 5b14d160cf
    chore(deps): bump pygments (#4064) dependabot[bot] 2025-07-21 13:07:27 -04:00
  • 0a9567e88c
    chore(deps): update tools to latest versions (#4065) anchore-actions-token-generator[bot] 2025-07-21 13:07:18 -04:00
  • af787d685c
    chore(deps): bump sigstore/cosign-installer from 3.9.1 to 3.9.2 (#4066) dependabot[bot] 2025-07-21 13:06:59 -04:00
  • 64b62c086c
    chore(deps): update CPE dictionary index (#4067) anchore-actions-token-generator[bot] 2025-07-21 07:57:39 -04:00
  • c491dab35b
    feat: add parsing for uv.lock (#3763) Joshua Kugler 2025-07-17 10:26:56 -08:00
  • 0e5db45aad
    chore(deps): bump marocchino/sticky-pull-request-comment (#4063) dependabot[bot] 2025-07-17 09:27:02 -04:00
  • 9cda2de2ad
    chore: lint gh actions with zizmor (#4062) Will Murphy 2025-07-16 17:12:38 -04:00
  • 37c182d5be
    chore(deps): update tools to latest versions (#4060) anchore-actions-token-generator[bot] 2025-07-15 11:32:27 -04:00
  • cef2a38117
    chore(deps): bump github.com/go-viper/mapstructure/v2 (#4061) dependabot[bot] 2025-07-15 11:32:11 -04:00
  • 75eda3976d
    chore(deps): bump github.com/bmatcuk/doublestar/v4 from 4.8.1 to 4.9.0 (#4059) dependabot[bot] 2025-07-14 17:14:11 +00:00
  • 2b1710b009
    chore(deps): bump golang.org/x/mod from 0.25.0 to 0.26.0 (#4054) dependabot[bot] 2025-07-14 14:43:04 +00:00
  • 9caad26ee5
    Pkg Metadata type unmarshal bug (#4043) mikey strauss 2025-07-14 17:28:38 +03:00
  • d88ad07855
    chore(deps): update tools to latest versions (#4053) anchore-actions-token-generator[bot] 2025-07-14 10:27:40 -04:00
  • 13986b7cea
    chore(deps): bump golang.org/x/net from 0.41.0 to 0.42.0 (#4056) dependabot[bot] 2025-07-14 10:27:10 -04:00
  • 75db6527bc
    chore(deps): update CPE dictionary index (#4058) anchore-actions-token-generator[bot] 2025-07-14 10:27:01 -04:00
  • 1c0ed133a3
    chore(deps): bump github.com/olekukonko/tablewriter from 1.0.7 to 1.0.8 (#4049) dependabot[bot] 2025-07-08 15:27:02 -04:00