issues
search
spdx
/
cdx2spdx
Utility that converts SBOM documents from CycloneDX to SPDX
Apache License 2.0
29
stars
9
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
cdx2spdx doesn't handle "LicenseRef" license IDs properly
#43
fschoenm
opened
1 month ago
1
Hierarchical sbom component information
#42
flemminglau
opened
7 months ago
5
Support for CycloneDX 1.5 or 1.6
#41
flemminglau
opened
7 months ago
4
Fix issue where the submodules are not getting fetch during the release plugin execution
#40
goneall
closed
10 months ago
0
Update POM file to use release plugin
#39
goneall
closed
10 months ago
0
Update SPDX library versions
#38
goneall
closed
10 months ago
0
Allow for data licenses other than CC0
#36
goneall
closed
1 year ago
2
Any value of the Data License except CC0-1.0 makes the conversion fail.
#35
flemminglau
closed
1 year ago
6
npm group and name should have / and not : when stitching the spdx name together
#34
flemminglau
opened
1 year ago
2
Support for cpe data and more lenient download location
#33
goneall
closed
1 year ago
3
Support for cpe data and a more lenient approch to invalid downloadLocation issues
#32
flemminglau
closed
1 year ago
6
CycloneDX conversion fails
#31
svniedner
opened
1 year ago
1
Minimum JDK version
#30
theresa-m
opened
1 year ago
2
Add Dockerfile for running tool in a containerized environment
#29
theresa-m
closed
1 year ago
0
Version 0.1.4
#28
goneall
closed
1 year ago
0
Update library versions
#27
goneall
closed
1 year ago
0
Update SPDX Java Libraries to version 1.1.4
#26
goneall
closed
1 year ago
0
Update SPDX Java libraries to version 1.1.3
#25
goneall
closed
1 year ago
0
Fix potential unit test failure
#24
goneall
closed
1 year ago
0
Update SPDX library versions
#23
goneall
closed
2 years ago
0
Update SPDX libraries to version 1.1.1
#22
goneall
closed
2 years ago
0
Complete rename of repository
#21
goneall
closed
2 years ago
0
Minor update to README
#20
goneall
closed
2 years ago
0
tool rename?
#19
kestewart
closed
2 years ago
2
Improve license conversions
#18
goneall
closed
2 years ago
0
Add group name to component name
#17
goneall
closed
2 years ago
0
Use GMT timezone for created date
#16
goneall
closed
2 years ago
0
Update utility to the SPDX version 2.3
#15
goneall
closed
2 years ago
0
Update utility for SPDX 2.3
#14
goneall
closed
2 years ago
2
Remove underscores from SPDX IDs
#13
goneall
closed
2 years ago
0
Add better usage information
#12
goneall
closed
2 years ago
0
Converting Errors
#11
sdd4181
closed
2 years ago
5
add mvn wrapper
#10
bhamail
closed
2 years ago
1
unit test for when metadata.tools is empty
#9
bhamail
closed
2 years ago
1
fix NullPointerException from empty Tools
#8
bhamail
closed
2 years ago
4
document need/how to checkout submodules. fixes #6
#7
bhamail
closed
2 years ago
1
Missing test resource files?
#6
bhamail
closed
2 years ago
2
Handle extracted license infos
#5
goneall
closed
2 years ago
0
Map Evidence.licenses to Package licenseInfoFromFiles
#4
goneall
closed
2 years ago
0
Add a document comment to indicate the document was converted from CycloneDX
#3
goneall
closed
2 years ago
1
Use the CycloneDX group in the SPDX name field
#2
goneall
closed
2 years ago
0
Times are converted to local times
#1
goneall
closed
2 years ago
0