defenseunicorns / uds-security-hub-v1-archive

All things about securing UDS
Apache License 2.0
2 stars 6 forks source link

Discuss/Plan for surfacing SBOM/CVE data points for UDS Runtime #223

Open DannyDTenacious opened 1 month ago

DannyDTenacious commented 1 month ago

Documented data points here: https://github.com/defenseunicorns/uds-runtime/issues/281

Design Mockup: https://www.figma.com/design/zmKcJ9Xin7ChzyGy6RCFLe/UDS-Runtime-(UI%2FCLI)?node-id=2869-4943&t=9eIRQbNxksi3Mywn-0

DannyDTenacious commented 3 weeks ago

Specifically would like to highlight the Vex attestations. I believe this can be pulled using Trivy.