-
This issue lists Renovate updates and detected dependencies. Read the [Dependency Dashboard](https://docs.renovatebot.com/key-concepts/dashboard/) docs to learn more.
## Repository problems
Renovate…
-
**Description**
In `kubectl sigstore verify-resource` subcommand (see #13), a user specifies the signed manifest and verifies if the resources deployed from the manifest are not changed from the …
-
### Name and Version
bitnami/spark:3.5.0-debian-11-r12
### What architecture are you using?
amd64
### What steps will reproduce the bug?
I used the bitnami helm chart to setup spark.
…
-
When we use the cdxgen command with project-name and project-version, and try to upload a sbom to a existing project, in dependency tracker the tool (cdxgen) creates a new project instead of uploading…
-
### Describe the bug
Create a new Gradle project with a few sub-projects
1) Project A applies the "cpp-library" plugin
2) Project B applies the "cpp-application" plugin, adds a dependency on pr…
-
**Describe the bug**
The scorecard certifier produces errors and does not appear to ingest any scorecard information into Guac.
**To Reproduce**
1. Create an SBOM that has packages on deps.dev. …
-
### Contributing guidelines
- [X] I've read the [contributing guidelines](https://github.com/docker/buildx/blob/master/.github/CONTRIBUTING.md) and wholeheartedly agree
### I've found a bug and chec…
-
## Which area/kind this issue is related to?
## Issue Description
As part of our effort to maintain best practices we have added all of our repositories to the [CLO Monitor](https://clomonitor…
-
When copy and pasting the example for postgres, I get this output:
```
/Users/jo/Library/Caches/pypoetry/virtualenvs/tc-mVmN3aPa-py3.10/bin/python /Users/jo/src/scratch/testcontainers/tc/main.py
…
-
The current Maven ecosystem definition is "The Maven Java package ecosystem. The name field is a Maven package name.", which is a little vague.
We should clarify that this is referring to Maven Ce…