Open atomic-kanta-sasaki opened 2 months ago
@atomic-kanta-sasaki Thank you for the report! Sorry if this looks weird indeed. There are several issues:
You also wrote:
And I need the Schema property and it is not included in the json file above.
Can you tell where I could find this? I could not find such property in the https://github.com/CycloneDX/specification/blob/master/schema/bom-1.3.schema.json schema. If you meant this https://github.com/CycloneDX/specification/blob/master/schema/bom-1.4.schema.json#L14 ... this did not exist (yet) in version 1.3
Here are some concrete follow up actions:
@pombredanne
Thanks for the reply.
https://scancode-toolkit.readthedocs.io/en/latest/index.html I don't see how to upgrade CycloneDX in this document.
If it's all in one document, please let me know where to find it.
I use scancode-toolkit version is v32.1.0.
@atomic-kanta-sasaki I updated the comment in https://github.com/nexB/scancode-toolkit/issues/3784#issuecomment-2122435361 ... sorry if this was not clear: these are not actions you can take, but rather these are bugs and issues we need to fix in ScanCode. You are welcomed to help if you fancy it!
In the meantime you may to try ScanCode.io https://github.com/nexB/scancode.io/ ?
@pombredanne I have already confirmed that I can use ScanCode.io to create SBOMs. Thanks for presenting the information! I will help you if I can be of any help regarding the development. TThank you!
I have already confirmed that I can use ScanCode.io to create SBOMs. great.
I will help you if I can be of any help regarding the development. You will be much welcomed.
I have a similar issue. Is there a good solution to using Scancode to generate a bill of materials that does not include components or licenses
Description
Tutorials are provided. The command as in the tutorial outputs SBOM, but if I set output to --cyclonedx, it does not output the correct SBOM.
How To Reproduce
tutorial command
./scancode -clpeui -n 2 --ignore "*.java" --json-pp sample.json samples
Commands I have executed
./scancode -clpeui -n 2 --ignore "*.java" --cyclonedx sample.json samples
output
this output do not write scan result. And I need the Schema property and it is not included in the json file above. If you already have a solution to these problems, please let me know.### System configuration. Thank you!