Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Are there examples of SBOM where the "component" type is "file"? #38

Open
VladimirBoiko opened this issue May 26, 2023 · 3 comments
Open
Labels
help wanted Extra attention is needed

Comments

@VladimirBoiko
Copy link

Hello, I can't find examples of SBOM where the "component" type is "file" and some component has related components.
Could you please provide such examples?

@sschuberth
Copy link

I'm also interested in such examples, esp. in best practices for file-typed components name fields: The spec's description to use

The name of the component. This will often be a shortened, single name of the component. Examples: commons-lang3 and jquery

does not seem to apply well here. I'd rather expect the name of a file-typed component to be the path to the file relative to the component root.

@jkowalleck jkowalleck added the help wanted Extra attention is needed label Sep 25, 2024
@rudsberg
Copy link

I would also be interested in such examples.

@jkowalleck
Copy link
Member

jkowalleck commented Oct 23, 2024

there is a feature-request for the webpack SBOM generator, to produce file-components with hashes: CycloneDX/cyclonedx-webpack-plugin#1235

as soon as this one is done, i might publish an example here.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
help wanted Extra attention is needed
Projects
None yet
Development

No branches or pull requests

4 participants