Commit Graph

  • 89948dfa51
    chore(deps): bump golang.org/x/mod from 0.28.0 to 0.29.0 (#4266) dependabot[bot] 2025-10-13 11:50:49 -04:00
  • 1a58f27f87
    chore(deps): update tools to latest versions (#4274) anchore-actions-token-generator[bot] 2025-10-13 11:50:41 -04:00
  • 450cd72da5
    chore(deps): bump modernc.org/sqlite from 1.39.0 to 1.39.1 (#4276) dependabot[bot] 2025-10-13 11:50:25 -04:00
  • 5056c7f861
    chore(deps): bump github/codeql-action from 4.30.7 to 4.30.8 (#4277) dependabot[bot] 2025-10-13 10:47:50 -04:00
  • 4ae8f73583
    migrate json schema generation (#4270) Alex Goodman 2025-10-10 10:16:28 -04:00
  • 18e789c4fd
    chore(deps): bump github.com/gohugoio/hashstructure from 0.5.0 to 0.6.0 (#4267) dependabot[bot] 2025-10-09 15:10:47 -04:00
  • 7d4680bc08
    chore(deps): bump golang.org/x/net from 0.45.0 to 0.46.0 (#4268) dependabot[bot] 2025-10-09 15:10:36 -04:00
  • 231f04ae0e
    feat: Parse pnpm v9 lockfiles (#4256) Bernardo de Araujo 2025-10-09 15:07:59 -04:00
  • 3b82a3724a
    chore(deps): bump github/codeql-action from 3.30.6 to 4.30.7 (#4262) dependabot[bot] 2025-10-08 16:44:21 -04:00
  • 337a2754e5
    chore(deps): bump golang.org/x/net from 0.44.0 to 0.45.0 (#4263) dependabot[bot] 2025-10-08 16:44:13 -04:00
  • 190f3068d8
    chore(deps): update tools to latest versions (#4261) anchore-actions-token-generator[bot] 2025-10-08 16:44:05 -04:00
  • bd013fe99a
    docs: Fix typos and linguistic errors in documentation (#4257) Sebastien Dionne 2025-10-06 10:22:22 -04:00
  • c732052cf1
    feat(cpegenerate): add support for binary package digit-suffix variations in CPE generation (#4093) Parthib Mukherjee 2025-10-06 19:39:38 +05:30
  • 8f1d45830d
    chore(deps): bump github.com/iancoleman/orderedmap (#4258) dependabot[bot] 2025-10-06 10:06:28 -04:00
  • ea7dc8f468
    chore(deps): bump github.com/go-git/go-git/v5 from 5.16.2 to 5.16.3 (#4259) dependabot[bot] 2025-10-06 10:06:17 -04:00
  • ff6a8b1802
    chore(deps): update tools to latest versions (#4248) anchore-actions-token-generator[bot] 2025-10-03 14:53:27 -04:00
  • a77d24e379
    Improve struct and field comments and incorporate into json schema (#4252) Alex Goodman 2025-10-03 13:01:56 -04:00
  • b96d3d20af
    chore(deps): bump github/codeql-action from 3.30.5 to 3.30.6 (#4253) dependabot[bot] 2025-10-03 12:07:20 -04:00
  • 5461a92337
    chore(deps): bump github.com/hashicorp/go-getter from 1.8.1 to 1.8.2 (#4254) dependabot[bot] 2025-10-03 12:07:13 -04:00
  • b9604cbf30
    chore(deps): bump github.com/CycloneDX/cyclonedx-go from 0.9.2 to 0.9.3 (#4251) dependabot[bot] 2025-10-02 13:24:25 +00:00
  • 9217f2099f
    chore: update ffmpeg tests (#4249) Keith Zantow 2025-10-01 09:11:36 -04:00
  • 605a275dd3
    chore(deps): bump github/codeql-action from 3.30.4 to 3.30.5 (#4246) dependabot[bot] 2025-09-30 17:06:10 -04:00
  • 319bb12627
    chore: do not redesign private Christopher Phillips 2025-09-26 15:07:48 -04:00
  • 7a131ff462
    chore: update config injection Christopher Phillips 2025-09-26 14:51:29 -04:00
  • 6fa1831484
    chore: update feature to include config to restore previous behavior Christopher Phillips 2025-09-26 14:16:49 -04:00
  • e1483e0285
    Add support for identifying ffmpeg/libav libraries (#4227) Alan Pope 2025-09-26 15:43:47 +01:00
  • 0a36dabf23
    feat(cataloger): add snap package cataloger for metadata extraction (#4151) Alan Pope 2025-09-26 15:42:29 +01:00
  • 64b71ec04c
    chore(deps): bump github.com/quasilyte/go-ruleguard/dsl (#4245) dependabot[bot] 2025-09-26 10:27:13 -04:00
  • d02e3bcf62 Fix: map license URLs to SPDX IDs for machine readable format Avadhut03 2025-09-26 09:56:21 +05:30
  • 8629080e80
    chore(deps): update tools to latest versions (#4238) anchore-actions-token-generator[bot] 2025-09-25 12:08:37 -04:00
  • f0998de717
    chore(deps): bump github/codeql-action from 3.30.3 to 3.30.4 (#4239) dependabot[bot] 2025-09-25 12:06:49 -04:00
  • 261ab7c1fd
    chore(deps): bump actions/cache from 4.2.4 to 4.3.0 (#4240) dependabot[bot] 2025-09-25 12:02:41 -04:00
  • 8232f5bd1b
    chore(deps): bump actions/cache in /.github/actions/bootstrap (#4241) dependabot[bot] 2025-09-25 12:02:30 -04:00
  • 21d50d7c31
    feat: add ARM64 Windows build target (#4237) Saleem Abdulrasool 2025-09-24 12:29:03 -07:00
  • c28b90717b
    chore(deps): update tools to latest versions (#4236) anchore-actions-token-generator[bot] 2025-09-24 15:07:58 -04:00
  • 323fd3e34c
    docs: add GitHub actions to supported ecosystems (#4235) Keith Zantow 2025-09-23 10:08:41 -04:00
  • af4d19f81d
    chore(deps): update tools to latest versions (#4230) anchore-actions-token-generator[bot] 2025-09-22 11:08:30 -04:00
  • 9b60b3e33d Ignore dpkg entries that have "deinstall" status indicating package has been removed but not purged Ross Kirk 2025-09-22 11:56:31 +01:00
  • d820c3436b
    chore(deps): bump github.com/charmbracelet/bubbletea (#4228) dependabot[bot] 2025-09-18 15:15:52 -04:00
  • 409642c8f0
    chore(deps): bump github.com/hashicorp/go-getter from 1.8.0 to 1.8.1 (#4229) dependabot[bot] 2025-09-18 15:15:43 -04:00
  • 3abbd940e3
    chore(deps): bump anchore/sbom-action from 0.20.5 to 0.20.6 (#4222) dependabot[bot] 2025-09-18 10:58:53 -04:00
  • 22f6f8f880
    chore(deps): update tools to latest versions (#4221) anchore-actions-token-generator[bot] 2025-09-18 07:16:16 -04:00
  • 6005fb3c20
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.14 to 0.5.15 (#4225) dependabot[bot] 2025-09-17 10:07:37 -04:00
  • b87b919149
    chore(deps): update anchore dependencies (#4220) v1.33.0 anchore-actions-token-generator[bot] 2025-09-15 20:22:09 +00:00
  • a51994d102
    chore(deps): update tools to latest versions (#4215) anchore-actions-token-generator[bot] 2025-09-15 14:38:28 -04:00
  • 333b951be3
    chore(deps): bump zizmorcore/zizmor-action from 0.1.2 to 0.2.0 (#4216) dependabot[bot] 2025-09-15 14:30:16 -04:00
  • 90c733d24d
    chore(deps): bump 8398a7/action-slack from 3.18.0 to 3.19.0 (#4217) dependabot[bot] 2025-09-15 14:30:03 -04:00
  • dacc2f61f9
    chore(deps): bump sigstore/cosign-installer from 3.9.2 to 3.10.0 (#4218) dependabot[bot] 2025-09-15 14:29:53 -04:00
  • 06b01aaa40
    chore(deps): bump modernc.org/sqlite from 1.38.2 to 1.39.0 (#4219) dependabot[bot] 2025-09-15 14:29:45 -04:00
  • e1762a2dda
    chore(deps): bump github.com/charmbracelet/bubbletea from 1.3.8 to 1.3.9 (#4214) dependabot[bot] 2025-09-12 10:21:20 -04:00
  • c5cbc89cb1
    fix: include RpmDBEntry modularityLabel in CycloneDX (#4212) Rafał Maj 2025-09-11 23:22:12 +02:00
  • 7bc15e3d82
    Native Image SBOM: Add Support for Locations Data (#4186) Joel Rudsberg 2025-09-11 20:16:09 +02:00
  • c6cd66357a
    chore(deps): bump github.com/spf13/afero from 1.14.0 to 1.15.0 (#4202) dependabot[bot] 2025-09-11 13:27:42 -04:00
  • 04e989d761
    chore(deps): bump github.com/charmbracelet/bubbletea from 1.3.6 to 1.3.8 (#4203) dependabot[bot] 2025-09-11 13:27:33 -04:00
  • b6f7532b0f
    chore(deps): bump github.com/vbatts/go-mtree from 0.5.4 to 0.6.0 (#4204) dependabot[bot] 2025-09-11 13:27:24 -04:00
  • 2531bfd8cb
    chore(deps): update tools to latest versions (#4200) anchore-actions-token-generator[bot] 2025-09-11 12:55:39 -04:00
  • 1fcdb67698
    chore(deps): bump github/codeql-action from 3.30.1 to 3.30.3 (#4210) dependabot[bot] 2025-09-11 12:50:41 -04:00
  • f986327257
    chore(deps): bump golang.org/x/tools from 0.36.0 to 0.37.0 (#4211) dependabot[bot] 2025-09-11 12:50:33 -04:00
  • 67e0f7e3f9
    chore(deps): update tools to latest versions (#4194) anchore-actions-token-generator[bot] 2025-09-08 09:55:06 -04:00
  • 169220ba81
    chore(deps): bump github.com/hashicorp/go-getter from 1.7.10 to 1.8.0 (#4197) dependabot[bot] 2025-09-08 09:50:54 -04:00
  • 1df4779b48
    chore(deps): bump golang.org/x/mod from 0.27.0 to 0.28.0 (#4198) dependabot[bot] 2025-09-08 09:50:09 -04:00
  • 3a7f1f27a6
    chore(deps): bump github.com/spf13/cobra from 1.9.1 to 1.10.1 (#4182) dependabot[bot] 2025-09-08 02:36:59 -04:00
  • 8e78fd57b8
    chore(deps): bump actions/setup-go from 5.5.0 to 6.0.0 (#4188) dependabot[bot] 2025-09-08 02:35:22 -04:00
  • b503690889
    chore(deps): bump actions/setup-go in /.github/actions/bootstrap (#4189) dependabot[bot] 2025-09-08 02:35:08 -04:00
  • cc07df0347
    chore(deps): bump github.com/hashicorp/go-getter from 1.7.9 to 1.7.10 (#4190) dependabot[bot] 2025-09-08 02:05:46 -04:00
  • 2b8f4bc028
    chore(deps): bump github/codeql-action from 3.30.0 to 3.30.1 (#4191) dependabot[bot] 2025-09-08 02:05:35 -04:00
  • 98c97e24a2
    chore(deps): bump actions/github-script from 7 to 8 (#4192) dependabot[bot] 2025-09-08 02:05:27 -04:00
  • 6f4da8c797
    chore(deps): bump github.com/stretchr/testify from 1.11.0 to 1.11.1 (#4173) dependabot[bot] 2025-09-03 12:22:38 -04:00
  • 647196055d
    chore(deps): update tools to latest versions (#4185) anchore-actions-token-generator[bot] 2025-09-03 12:22:11 -04:00
  • 39441f1999
    chore(deps): bump github.com/ulikunitz/xz from 0.5.12 to 0.5.14 (#4178) dependabot[bot] 2025-09-02 00:26:54 -04:00
  • 507987c193
    chore(deps): bump github.com/spf13/cobra from 1.9.1 to 1.10.0 (#4180) dependabot[bot] 2025-09-02 00:26:42 -04:00
  • 7e4bf7f8c2
    chore(deps): bump github/codeql-action from 3.29.11 to 3.30.0 (#4181) dependabot[bot] 2025-09-02 00:26:33 -04:00
  • bc18e3ab8c
    chore(deps): bump github.com/anchore/stereoscope (#4174) dependabot[bot] 2025-08-28 13:43:20 -04:00
  • c4eb071324
    chore(deps): bump github.com/gookit/color from 1.5.4 to 1.6.0 (#4176) dependabot[bot] 2025-08-28 13:42:38 -04:00
  • cbcf8bd542
    chore(deps): bump golang.org/x/tools from 0.35.0 to 0.36.0 (#4172) dependabot[bot] 2025-08-27 13:09:28 -04:00
  • d7d690a3ad Add llms.txt to describe this repo to our AI overlords 🤖 add-llms-txt Alan Pope 2025-08-27 14:40:53 +01:00
  • 66bf43c0cc
    test: java binary skip for apple Silicon java-binary-skip-apple Christopher Phillips 2025-08-26 17:57:21 -04:00
  • 2d8e337d34
    chore(deps): update anchore dependencies (#4169) v1.32.0 anchore-actions-token-generator[bot] 2025-08-26 17:04:20 -04:00
  • 13ffeeb3d0
    feat: combine go module file and go source discovery into single cataloger (#4127) Christopher Angelo Phillips 2025-08-26 15:35:44 -04:00
  • 170c4c41f4
    use go.yaml.in/yaml (#4157) n-bes 2025-08-26 18:24:23 +03:00
  • 91c5c850ea Fix go fmt issue in static analysis add-csproj-cataloger Alan Pope 2025-08-26 16:02:04 +01:00
  • 42c6259d4b chore(deps): bump github.com/diskfs/go-diskfs (#4159) dependabot[bot] 2025-08-26 09:00:02 -04:00
  • abed9f2d5f chore(deps): bump github.com/stretchr/testify from 1.10.0 to 1.11.0 (#4160) dependabot[bot] 2025-08-26 08:59:49 -04:00
  • e4f4aa2956 resolve issue with incorrect test fixture content Alan Pope 2025-08-26 15:08:43 +01:00
  • 7dc7c01c5c
    chore(deps): bump github.com/diskfs/go-diskfs (#4159) dependabot[bot] 2025-08-26 09:00:02 -04:00
  • 9f07fa4a68
    chore(deps): bump github.com/stretchr/testify from 1.10.0 to 1.11.0 (#4160) dependabot[bot] 2025-08-26 08:59:49 -04:00
  • 0afe26152f fix issue with parsing variables in csproj files Alan Pope 2025-08-26 13:48:42 +01:00
  • dd0e7dc20f tweaks to improve performance, coverage and filtering Alan Pope 2025-08-26 13:07:55 +01:00
  • e5fd03d2f6 First pass at cataloging .csproj files Alan Pope 2025-08-26 12:01:11 +01:00
  • 37b2c0391b
    chore(deps): update tools to latest versions (#4154) anchore-actions-token-generator[bot] 2025-08-25 09:57:45 -04:00
  • ada74a8121
    Feature: Add ffmpeg binary cataloger (#3994) Alan Pope 2025-08-25 12:50:04 +01:00
  • ca21ccf21d
    chore: redhat cataloger error when sqlite not regsitered (#4150) Keith Zantow 2025-08-21 10:55:47 -04:00
  • 26792fc12d
    chore(deps): bump github/codeql-action from 3.29.10 to 3.29.11 (#4149) dependabot[bot] 2025-08-21 10:43:25 -04:00
  • a433045d51
    feat: basic Conda ecosystem support (#4002) Simeon Stoykov 2025-08-20 05:37:27 +03:00
  • 8e51e8d995
    chore(deps): bump github/codeql-action from 3.29.9 to 3.29.10 (#4145) dependabot[bot] 2025-08-18 15:29:36 -04:00
  • ba2eb5701f
    chore(deps): update CPE dictionary index (#4143) anchore-actions-token-generator[bot] 2025-08-18 10:14:39 -04:00
  • c4292ad79b
    chore(deps): bump github.com/hashicorp/go-getter from 1.7.8 to 1.7.9 (#4144) dependabot[bot] 2025-08-18 11:42:13 +01:00
  • 0e669faecd
    chore(deps): bump anchore/sbom-action from 0.20.4 to 0.20.5 (#4141) dependabot[bot] 2025-08-15 10:22:24 -04:00
  • 10ea022fe7
    chore(deps): update tools to latest versions (#4139) anchore-actions-token-generator[bot] 2025-08-14 13:34:24 -04:00
  • 87e1d8cb87
    feat: add support for authors, maintainers, and contributors in package.json. (#4003) Alan Pope 2025-08-13 22:55:15 +01:00