-
**Describe the bug**
With the Helics image surfactant currently fails to generate an output in the SPDX format.
**To Reproduce**
Steps to reproduce the behavior:
1. Install latest main of surfac…
-
Reticketing from https://github.com/getsentry/fsl.software/issues/20#issuecomment-1836688802 ...
Once the dust settles on [a likely 1.1](https://github.com/getsentry/fsl.software/issues?q=is%3Aissu…
-
In working on a utility to upgrade SPDX 2.X documents to SPDX 3.0, I need to come up with a mapping of equivalent properties and classes - specifically the URI's for those classes and properties.
I…
-
According to the documentation and output files, the format of the SPDX document is in version 2.2 ("spdxVersion": "SPDX-2.2")
However, according to the German Federal Office for Information Securi…
-
Currently Ghidra uses full license text in all files, while a lof ot FOSS and proprietary software standardized the license and copyright information in the form of more succinct [SPDX](https://spdx.o…
-
I can see that SBOMs are generated by `make oci-build-manager` in trust-manager. It looks like these would be helpful to publish in releases, and it shouldn't be hard to add them to github releases.
…
-
hi,
is this project maintained?
is it possible to make this work with Yocto generated SBOMs? i have a demo using the action in https://github.com/mischief/spdx-sbom-test, with an SBOM generated …
-
SPDX 3.0 was officially released on April 16, 2024. We should get support into GUAC for when we start getting SBOMs that follow the new specification.
-
This issue is to provide feedback on the SPDX 3.0 design and implementation prior to the pull request being created.
The [v3-prototype](https://github.com/spdx/Spdx-Java-Library/tree/v3-prototype) …
-
**Description**
According to [IANA registered](https://www.iana.org/assignments/media-types/application/spdx+json ), the mediatype for spdx JSON documents should be `application/spdx+json`
Curre…