Closed mmarseu closed 4 weeks ago
The documentation still contains the old examples:
cdx-ev validate bom.json --report-format=warnings-ng" # writes issues to a file "issues.json" and stdout cdx-ev validate bom.json --report-format=warnings-ng --output=myfile.json" # write issues to a file "myfile.json" and stdout cdx-ev validate bom.json --report-format=gitlab-code-quality # writes issues to a file "issues.json" and stdout
The new depdendency should be mentioned as well.
By new dependency you mean the two options --report-format
and --report-path
? Because I can't see that I've introduced a new dependency to the project in this PR.
I've updates this section in the latest change.
The documentation still contains the old examples:
cdx-ev validate bom.json --report-format=warnings-ng" # writes issues to a file "issues.json" and stdout cdx-ev validate bom.json --report-format=warnings-ng --output=myfile.json" # write issues to a file "myfile.json" and stdout cdx-ev validate bom.json --report-format=gitlab-code-quality # writes issues to a file "issues.json" and stdout
The new depdendency should be mentioned as well.
By new dependency you mean the two options
--report-format
and--report-path
? Because I can't see that I've introduced a new dependency to the project in this PR.I've updates this section in the latest change.
Sorry, mistake on my part, i meant exactly those commands/command names.
This PR reworks the command-line options for report creation in the validate command.
Previously:
--report-format
could be set tostdout
, which prints all results in normal log format to stdout.warnings-ng
gitlab-code-quality
--output
option was to provide a path where to write the report.This was confusing because the interaction between both arguments wasn't clear (what if you set
stdout
but still provide an--output
or no--output
but still a--report-format
?) and because the help text for--output
was wrong (it was reused from other commands which output SBOMs, not validation reports).This PR makes these breaking changes:
stdout
option from--report-format
--output
to--report-path