smithy-security / smithy

The security workflow engine!
https://smithy.security
Apache License 2.0
73 stars 12 forks source link

Add gh-sbom to dracon #18

Open surendrapathak opened 1 year ago

surendrapathak commented 1 year ago

Expected behaviour gh-sbom is the newest sbom generator that can traverse through GitHub dependency-tree to build a sbom in CycloneDX or SPDX (JSONs).

It would be great to see dracon support integration with gh-sbom for GitHub repositories.

northdpole commented 1 year ago

thank you! this sounds like a great idea, we will get to it asap