issues
search
microsoft
/
sbom-tool
The SBOM tool is a highly scalable and enterprise ready tool to create SPDX 2.2 compatible SBOMs for any variety of artifacts.
MIT License
1.63k
stars
133
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Support Ubuntu Chisel manifests as an sbom input
#811
richlander
opened
22 hours ago
1
build(deps): bump codecov/codecov-action from 5.0.2 to 5.0.7
#810
dependabot[bot]
opened
1 day ago
1
build(deps): bump github/codeql-action from 3.27.4 to 3.27.5
#809
dependabot[bot]
opened
1 day ago
0
build(deps): bump Microsoft.NET.Test.Sdk and Newtonsoft.Json
#808
dependabot[bot]
closed
2 days ago
0
build(deps): bump codecov/codecov-action from 5.0.2 to 5.0.4
#807
dependabot[bot]
closed
1 day ago
1
Bump System.Net.Http version
#806
sfoslund
closed
3 days ago
1
build(deps): bump codecov/codecov-action from 4.6.0 to 5.0.2
#805
dependabot[bot]
closed
3 days ago
0
Modified pip extension - get license info from pipcomponent and added…
#804
samuelc7
opened
6 days ago
0
Use the fully qualified name for the Zip and Unzip tasks
#803
bstadick
opened
6 days ago
2
PIP Comp Detect Adapter - No License or Supplier information
#802
samuelc7
opened
6 days ago
0
[Microsoft.Sbom.Targets] Use fully qualified MSBuild task name for Unzip task in targets file
#801
bstadick
opened
1 week ago
0
[Microsoft.Sbom.Targets] Rename internal MSBuild properties to minimize risk of conflicts
#800
KalleOlaviNiemitalo
opened
1 week ago
2
build(deps): bump github/codeql-action from 3.27.0 to 3.27.4
#799
dependabot[bot]
closed
3 days ago
1
build(deps): bump codecov/codecov-action from 4.6.0 to 5.0.0
#798
dependabot[bot]
closed
4 days ago
1
Delete snsKeyPublic.snk
#797
Tersembunyi1990
closed
6 days ago
1
"No Packages Detected" for Java Maven Project
#796
zean0301
closed
6 days ago
1
build(deps): bump Microsoft.Extensions.Http from 8.0.1 to 9.0.0
#795
dependabot[bot]
opened
1 week ago
1
build(deps): bump MSTest.TestAdapter from 3.6.2 to 3.6.3
#794
dependabot[bot]
closed
3 days ago
3
build(deps): bump MSTest.TestFramework from 3.6.2 to 3.6.3
#793
dependabot[bot]
closed
2 days ago
1
build(deps): bump System.Threading.Tasks.Extensions from 4.5.4 to 4.6.0
#792
dependabot[bot]
closed
2 days ago
1
build(deps): bump Microsoft.Extensions.Hosting from 8.0.1 to 9.0.0
#791
dependabot[bot]
opened
1 week ago
1
build(deps): bump Microsoft.VisualStudio.Threading.Analyzers from 17.11.20 to 17.12.19
#790
dependabot[bot]
opened
1 week ago
1
build(deps): bump Microsoft.Extensions.Caching.Memory, Microsoft.Extensions.DependencyInjection.Abstractions and Microsoft.Extensions.Logging.Abstractions
#789
dependabot[bot]
opened
1 week ago
1
build(deps): bump System.Text.Json and System.Threading.Tasks.Extensions
#788
dependabot[bot]
opened
1 week ago
1
build(deps): bump Microsoft.IO.Redist from 6.0.1 to 6.1.0
#787
dependabot[bot]
closed
3 days ago
1
build(deps): bump System.Threading.Channels from 6.0.0 to 9.0.0
#786
dependabot[bot]
opened
1 week ago
0
build(deps): bump NuGet.Frameworks from 6.11.1 to 6.12.1
#785
dependabot[bot]
opened
1 week ago
1
build(deps): bump Microsoft.Extensions.DependencyModel from 8.0.2 to 9.0.0
#784
dependabot[bot]
opened
1 week ago
1
build(deps): bump github/codeql-action from 3.27.0 to 3.27.3
#783
dependabot[bot]
closed
1 week ago
1
Revert #758 when we pick up component-detection 5.1.6 or newer
#782
DaveTryon
opened
1 week ago
0
build(deps): bump FluentAssertions from 6.12.1 to 6.12.2
#781
dependabot[bot]
closed
3 days ago
0
build(deps): bump github/codeql-action from 3.27.0 to 3.27.1
#780
dependabot[bot]
closed
1 week ago
1
build(deps): bump Scrutor from 5.0.1 to 5.0.2
#779
dependabot[bot]
opened
2 weeks ago
1
the genereated .\_manifest\spdx_2.2\manifest.spdx.json scaned with trivy got no vulnerbiltiy
#778
baoj-dfo
opened
2 weeks ago
12
build(deps): bump Serilog.Sinks.Async from 2.0.0 to 2.1.0
#777
dependabot[bot]
closed
2 weeks ago
0
build(deps): bump AutoMapper.Extensions.Microsoft.DependencyInjection from 8.1.1 to 12.0.1
#776
dependabot[bot]
opened
2 weeks ago
3
Scrub dotnet 6 references
#775
DaveTryon
closed
3 weeks ago
1
Expand osx coverage in PR builds
#774
DaveTryon
closed
3 weeks ago
1
Made the Timeout in LicenseInformationService configurable via CLI argument (#584)
#773
kidcline1
opened
3 weeks ago
7
build(deps): bump MSTest.TestFramework from 3.6.1 to 3.6.2
#772
dependabot[bot]
closed
3 weeks ago
1
build(deps): bump MSTest.TestAdapter from 3.6.1 to 3.6.2
#771
dependabot[bot]
closed
3 weeks ago
0
Add language tag to code blocks and correct indented code block
#770
bact
closed
3 weeks ago
2
typo: ThrowArguement -> ThrowArgument; fix SPDX URL anchor
#769
bact
closed
3 weeks ago
1
build(deps): bump Microsoft.Build.Framework from 17.11.4 to 17.12.6
#768
dependabot[bot]
opened
3 weeks ago
2
Blunt update of SPDX version 2.2 -> 2.2.2
#767
bact
closed
3 weeks ago
5
Fix several typos in Markdown files and in a comment
#766
bact
closed
3 weeks ago
4
Update SPDX spec links to current
#765
bact
closed
3 weeks ago
1
build(deps): bump Microsoft.Build from 17.10.4 to 17.11.4
#764
dependabot[bot]
closed
3 weeks ago
1
build(deps): bump actions/setup-dotnet from 4.0.1 to 4.1.0
#763
dependabot[bot]
closed
4 weeks ago
1
Add support for go packages
#762
gingermusketeer
closed
2 weeks ago
2
Next