issues
search
CycloneDX
/
specification
OWASP CycloneDX is a full-stack Bill of Materials (BOM) standard that provides advanced supply chain capabilities for cyber risk reduction. SBOM, SaaSBOM, HBOM, AI/ML-BOM, CBOM, OBOM, MBOM, VDR, and VEX
https://cyclonedx.org/
Apache License 2.0
337
stars
57
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
[Discussion] Findings on Discrepancy Assessments within the SBOM Ecosystem.
#433
dw763j
closed
2 months ago
0
chore(dependencies): bump Saxon-HE from 9.9.1-8 to 10.9
#432
jkowalleck
opened
2 months ago
0
chore(dependencies): bump bufbuild/buf:1.30.1
#431
jkowalleck
closed
2 months ago
0
chore(deps): bump ajv-formats from 2.1.1 to 3.0.1 in /tools/src/test/js
#430
dependabot[bot]
closed
2 months ago
2
chore(deps): bump commons-io:commons-io from 2.7 to 2.16.1 in /tools
#429
dependabot[bot]
closed
1 month ago
0
chore(deps): bump org.apache.maven.plugins:maven-surefire-plugin from 3.0.0-M5 to 3.2.5 in /tools
#428
dependabot[bot]
closed
1 month ago
0
chore(deps): bump org.apache.commons:commons-lang3 from 3.6 to 3.14.0 in /tools
#427
dependabot[bot]
opened
2 months ago
0
chore(deps): bump org.apache.commons:commons-text from 1.2 to 1.11.0 in /tools
#426
dependabot[bot]
closed
2 months ago
1
fix: ProtoBuf evidence not repeated, but optional
#425
jkowalleck
opened
2 months ago
0
chore: depedabot for all used ecosystems
#424
jkowalleck
closed
2 months ago
0
tests: annotate schema for test resources of CDX1.6 JSON
#423
jkowalleck
closed
2 months ago
0
`component.evidence` is repeated in proto and object in jsonschema
#422
prabhu
opened
2 months ago
5
Updated dependency attribute docs
#421
prabhu
closed
2 months ago
0
fix: revisit new component identifiers
#419
jkowalleck
closed
3 months ago
0
1.6 bump bufbuild buf 1.30.0
#418
jkowalleck
closed
3 months ago
0
fix/harmonize version length
#417
jkowalleck
closed
3 months ago
2
Added descriptions for ML learning types
#416
stevespringett
closed
3 months ago
0
docs: fix examples for `versionRange` according to VERS spec
#415
jkowalleck
closed
3 months ago
0
Add support for OmniBOR and Software Heritage persistent IDs
#414
stevespringett
closed
3 months ago
0
Add support for OmniBOR and SWHID
#413
stevespringett
closed
3 months ago
0
Added support for concluded value. Updated test cases.
#412
stevespringett
closed
3 months ago
0
Add concluded value to identity evidence
#411
stevespringett
closed
3 months ago
0
Add support for redaction to compositions
#410
stevespringett
closed
2 months ago
1
Add support for redaction
#409
stevespringett
opened
3 months ago
0
Added support for license acknowledgements
#408
stevespringett
closed
3 months ago
0
Add support for license acknowledgements
#407
stevespringett
closed
3 months ago
0
environmental/economical/ethical costs of service/component/etc for runtime/manufacturing/etc
#406
jkowalleck
opened
3 months ago
0
Where to find latest VEX schema version
#405
niklashempel
closed
3 months ago
2
Link to Purl Version Specification does not work
#404
weichslgartner
opened
3 months ago
1
remove restriction on json's `$schema` annotation
#403
jkowalleck
closed
3 months ago
0
remove `$schema` restrictions from JSON
#402
jkowalleck
closed
3 months ago
1
fix: protobuf `Metadata.licenses` repeated
#401
jkowalleck
closed
3 months ago
0
Request: Add project sustainability fields to CycloneDX
#400
sjn
opened
3 months ago
20
Fix empty link to PURL spec / VERS spec
#399
nathannaveen
opened
3 months ago
1
docs: Spelling and grammar checks
#398
prabhu
closed
3 months ago
0
docs: spelling and grammar checks
#397
prabhu
closed
3 months ago
1
Propose new environmental consideration information for ML models
#396
mrutkows
closed
2 months ago
9
Propose new environmental consideration information for ML models
#395
mrutkows
closed
3 months ago
15
Add inline mapping to SCVS BOM Maturity Model
#394
stevespringett
opened
3 months ago
8
add headers to `*.textproto`
#393
jkowalleck
closed
3 months ago
1
protobuf schema test files add schema headers
#392
jkowalleck
closed
3 months ago
0
wrong proto3 schema default values for enums
#391
jkowalleck
opened
3 months ago
0
bom-1.5.xsd does not compile
#390
jzampieron
closed
3 months ago
1
tests: add example for component scope
#389
jkowalleck
closed
3 months ago
0
showcase: protobuf QA pipeline - test negatives/findings
#388
jkowalleck
closed
4 months ago
1
BC: remove deprecated `component.author`
#387
jkowalleck
opened
4 months ago
0
BC: remove deprecated `metadata.manufacture`
#386
jkowalleck
opened
4 months ago
0
introduce QA pipeline for protobuf schemas
#385
jkowalleck
closed
3 months ago
2
chore: add linter for protobuf schema files
#384
jkowalleck
closed
3 months ago
3
Add tags support
#383
stevespringett
closed
4 months ago
0
Previous
Next