The help documentation for the verify file command in cyclonedx-cli appears to incorrectly specify the placement of options like --key-file and --signature-file.
Current Help Text:
Usage:
cyclonedx-cli [options] verify file <file>
This suggests that options such as --key-file and --signature-file should be placed before the verify file subcommand. For example:
Description:
The help documentation for the
verify file
command incyclonedx-cli
appears to incorrectly specify the placement of options like--key-file
and--signature-file
.Current Help Text:
This suggests that options such as
--key-file
and--signature-file
should be placed before theverify file
subcommand. For example:However, this does not work. The correct syntax is:
Expected Behavior:
The help text should clarify that the options
--key-file
and--signature-file
must be placed after theverify file
subcommand and<file>
argument.