Commit graph

  • d03a7e82fc
    test: update java purl integration test image #2815 Weston Steimel 2024-08-09 18:21:29 +0100
  • 11c2e40068
    fix: improve groupid extraction for Jenkins plugins Weston Steimel 2024-04-25 21:03:59 +0100
  • 91cf066db6
    support .kar files (#3113) GGMU 2024-08-12 19:10:03 +0300
  • c19cf626ab
    chore: fix some comments (#3114) luozexuan 2024-08-13 00:08:04 +0800
  • cf85450e08
    chore: fix failing python relationship test (#3117) Keith Zantow 2024-08-12 12:07:47 -0400
  • 03867a0062
    chore: fix failing python relationship test #3117 Keith Zantow 2024-08-12 10:53:31 -0400
  • 49d4e32241
    update-slack-to-discourse (#3111) Alan Pope 2024-08-12 11:49:10 +0100
  • 3e93f7ceb7 chore(deps): update CPE dictionary index wagoodman 2024-08-12 01:29:17 +0000
  • 82b3d2e874 sss tomersein 2024-08-11 17:30:44 +0300
  • 18590916ba add enable to files cataloger tomersein 2024-08-10 15:26:22 +0300
  • 6bd156096f add enable to files cataloger tomersein 2024-08-10 15:25:16 +0300
  • 8524d7c46a add enable to files cataloger tomersein 2024-08-10 15:19:45 +0300
  • dd477e282c add kar #3113 tomersein 2024-08-09 22:54:28 +0300
  • 4774f5a344 add kar tomersein 2024-08-09 22:41:33 +0300
  • e7cce40121 chore: fix some comments #3114 luozexuan 2024-08-09 23:48:00 +0800
  • 4616d72bbb add kar tomersein 2024-08-09 18:36:24 +0300
  • e03d253068 add kar tomersein 2024-08-09 18:25:45 +0300
  • 2550206300 update-slack-to-discourse #3111 Alan Pope 2024-08-09 13:37:51 +0100
  • 19cc664cf8
    test: increase java purl generation test coverage (#3110) v1.11.0 Weston Steimel 2024-08-09 10:14:10 +0000
  • 05a2a74650
    test: increase java purl generation test coverage #3110 Weston Steimel 2024-08-09 09:29:51 +0100
  • 64a9ecbf7a
    chore(deps): bump modernc.org/sqlite from 1.31.1 to 1.32.0 (#3106) dependabot[bot] 2024-08-08 15:49:45 -0400
  • 6267d69930
    chore(deps): bump sigstore/cosign-installer from 3.5.0 to 3.6.0 (#3107) dependabot[bot] 2024-08-08 15:49:37 -0400
  • 83829fe394
    chore(deps): bump sigstore/cosign-installer from 3.5.0 to 3.6.0 #3107 dependabot[bot] 2024-08-08 13:48:41 +0000
  • 4443b2ca02
    chore(deps): bump modernc.org/sqlite from 1.31.1 to 1.32.0 #3106 dependabot[bot] 2024-08-08 13:21:10 +0000
  • 1fb47d908e
    chore(deps): update tools to latest versions (#3099) anchore-actions-token-generator[bot] 2024-08-07 14:26:05 -0400
  • 2339743c8c
    chore(deps): bump github/codeql-action from 3.25.15 to 3.26.0 (#3101) dependabot[bot] 2024-08-07 14:25:52 -0400
  • 9031592649
    chore(deps): bump actions/upload-artifact from 4.3.5 to 4.3.6 (#3102) dependabot[bot] 2024-08-07 14:25:44 -0400
  • 47d192d79b
    chore(deps): bump github.com/google/go-containerregistry (#3103) dependabot[bot] 2024-08-07 14:25:36 -0400
  • 040b683da8
    chore(deps): bump golang.org/x/net from 0.27.0 to 0.28.0 (#3104) dependabot[bot] 2024-08-07 14:25:28 -0400
  • 319b6756ba add log time of task tomersein 2024-08-07 20:32:12 +0300
  • e3736ffdb8
    chore(deps): bump golang.org/x/net from 0.27.0 to 0.28.0 #3104 dependabot[bot] 2024-08-07 13:34:08 +0000
  • b80bf3a91e
    chore(deps): bump github.com/google/go-containerregistry #3103 dependabot[bot] 2024-08-07 13:34:00 +0000
  • 6f98cc44b5
    chore(deps): bump actions/upload-artifact from 4.3.5 to 4.3.6 #3102 dependabot[bot] 2024-08-07 13:18:23 +0000
  • 90037125cc
    chore(deps): bump github/codeql-action from 3.25.15 to 3.26.0 #3101 dependabot[bot] 2024-08-07 13:18:20 +0000
  • 9da5f596ab chore(deps): update tools to latest versions #3099 spiffcs 2024-08-07 08:07:46 +0000
  • bb952ed25a
    Draft: Identity proof - do NOT merge identity-proof Alan Pope 2024-08-07 08:12:41 +0100
  • dcd87d1fef
    chore(deps): bump actions/upload-artifact from 4.3.4 to 4.3.5 (#3095) dependabot[bot] 2024-08-06 13:17:36 -0400
  • 214a0498e0
    chore(deps): update CPE dictionary index (#3094) anchore-actions-token-generator[bot] 2024-08-06 13:07:48 -0400
  • 0f9df805c1
    chore(deps): bump golang.org/x/mod from 0.19.0 to 0.20.0 (#3096) dependabot[bot] 2024-08-06 13:07:33 -0400
  • 703330abd0
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.6 to 0.5.7 (#3097) dependabot[bot] 2024-08-06 13:07:21 -0400
  • 2e460bb521
    fix: metadata nil check dervoeti 2024-08-06 08:59:18 +0200
  • 730b877c7c
    refactor: simplified the change dervoeti 2024-08-05 23:35:02 +0200
  • a49f8ab409
    fix: only include .metadata.component as package if it has a certain type dervoeti 2024-08-05 23:04:59 +0200
  • b388cebb84
    Merge remote-tracking branch 'upstream/main' into feat/known-unknowns Keith Zantow 2024-08-05 16:41:34 -0400
  • 390fc91743
    feat: added integration test dervoeti 2024-08-05 22:13:28 +0200
  • 9d40d1152e
    feat: improved java maven property resolution (#2769) Gijs Calis 2024-08-05 17:30:47 +0200
  • 30fbe8e341
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.6 to 0.5.7 #3097 dependabot[bot] 2024-08-05 14:00:36 +0000
  • 095ed0d6a8
    chore(deps): bump golang.org/x/mod from 0.19.0 to 0.20.0 #3096 dependabot[bot] 2024-08-05 14:00:19 +0000
  • e714d8ade1
    chore(deps): bump actions/upload-artifact from 4.3.4 to 4.3.5 #3095 dependabot[bot] 2024-08-05 13:33:29 +0000
  • bf7708a50e chore(deps): update CPE dictionary index #3094 wagoodman 2024-08-05 01:29:01 +0000
  • a2a695fdc7
    chore: pr feedback #2769 Keith Zantow 2024-08-04 00:17:59 -0400
  • e11085c6a2
    Merge remote-tracking branch 'upstream/main' into feature-improved-java-cataloging Keith Zantow 2024-08-03 22:34:20 -0400
  • f88fb4a806
    Merge remote-tracking branch 'upstream/main' into feat/known-unknowns Keith Zantow 2024-08-03 22:25:46 -0400
  • cc15edca62
    fix: use organization for package supplier when reading Java vendor fields (#3093) Harippriya Sivapatham 2024-08-04 01:30:55 +0530
  • b8b46aa58d Fixed build failure #3093 Harippriya Sivapatham 2024-08-03 23:08:12 +0530
  • 1f7a0f23bc Updated PackageSupplier to type Organization for JAR files Harippriya Sivapatham 2024-08-03 15:42:23 +0530
  • 623532e3ed
    chore(deps): update tools to latest versions (#3091) anchore-actions-token-generator[bot] 2024-08-02 13:25:09 -0400
  • 671684eb78
    fix: change var name to camel case dervoeti 2024-08-02 17:49:30 +0200
  • 702133779d
    feat: pick up CycloneDX BOM components from metadata as well dervoeti 2024-08-02 15:28:42 +0200
  • b1e9c9760f chore(deps): update tools to latest versions #3091 spiffcs 2024-08-02 08:07:30 +0000
  • 47a6a2b9fb add xfs source intg #3089 cloudaid 2024-08-01 15:27:56 -0400
  • 0b759e8f73 add xfs img source cloudaid 2024-08-01 14:40:39 -0400
  • 9227d20549 add xfs pkg cloudaid 2024-08-01 14:31:34 -0400
  • 48f1e975f0
    fix: update 'guessMainPackageNameAndVersionFromPomInfo' and 'artifactIDMatchesFilename' (#3054) Dor Hayun 2024-08-01 20:47:15 +0300
  • c84cb2cf84
    fix: update mainModuleVersion function to always prefix v to findings (#3087) Christopher Angelo Phillips 2024-08-01 11:29:07 -0400
  • 05a10e8bed
    chore: update release script to use gh from binny (#3084) Keith Zantow 2024-07-31 20:10:17 -0400
  • 1932f2fd41
    Merge remote-tracking branch 'upstream/main' into feat/known-unknowns Keith Zantow 2024-07-31 18:00:46 -0400
  • a21d722df9 fix: update 'guessMainPackageNameAndVersionFromPomInfo' and 'artifactIDMatchesFilename' #3054 dor-hayun 2024-07-22 12:46:57 +0300
  • 92d63df6f5
    Added the SWI Prolog (swipl) ecosystem (#3076) Laurent Goderre 2024-07-31 16:13:26 -0400
  • a9fdd3cacc
    test: make sure ldflags are prefixed with v #3087 Christopher Phillips 2024-07-31 15:03:22 -0400
  • 72a894149a
    chore: basic fix Christopher Phillips 2024-07-31 14:30:06 -0400
  • 7837e26474
    fix: properly respect max parent depth, default to unlimited Keith Zantow 2024-07-30 23:32:38 -0400
  • 91c9adb865
    chore: update release script to use gh from binny #3084 Keith Zantow 2024-07-30 12:32:49 -0400
  • 7ff89e5173
    Merge remote-tracking branch 'upstream/main' into feature-improved-java-cataloging Keith Zantow 2024-07-30 12:05:25 -0400
  • cec49e67be
    Merge remote-tracking branch 'upstream/main' into feat/known-unknowns Keith Zantow 2024-07-30 12:03:30 -0400
  • a4b5dcd0df
    fix: improve determinism in java archive identification (#3085) v1.10.0 Keith Zantow 2024-07-30 12:02:52 -0400
  • 3a153a1daf
    chore: erroneous copy/paste #3085 Keith Zantow 2024-07-30 11:47:41 -0400
  • 8dc64abc6f
    Merge remote-tracking branch 'upstream/main' into fix/deterministic-java-pom-properties-order Keith Zantow 2024-07-30 11:46:37 -0400
  • 084e1f7ef9
    chore: reorganize test utils Keith Zantow 2024-07-29 18:10:27 -0400
  • 697b4e16ec
    chore: don't trim existing pom Keith Zantow 2024-07-29 17:11:03 -0400
  • 64c369e95f
    Merge remote-tracking branch 'upstream/main' into feat/known-unknowns Keith Zantow 2024-07-29 16:47:05 -0400
  • 984f21c0ba
    Merge remote-tracking branch 'upstream/main' into feature-improved-java-cataloging Keith Zantow 2024-07-29 10:53:16 -0400
  • 06526e2931
    chore(deps): update stereoscope to 50ce3be7aa1fb8829234ae648215e7907196bfa5 (#3075) anchore-actions-token-generator[bot] 2024-07-29 10:04:46 -0400
  • a2042e629c
    chore(deps): update CPE dictionary index (#3079) anchore-actions-token-generator[bot] 2024-07-29 10:03:59 -0400
  • a35e410c75
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.5 to 0.5.6 (#3082) dependabot[bot] 2024-07-29 10:03:44 -0400
  • 8dd7c9c0b9
    chore(deps): bump github/codeql-action from 3.25.14 to 3.25.15 (#3083) dependabot[bot] 2024-07-29 10:03:35 -0400
  • 490e05adb2
    fix: traefik classifier (#3077) witchcraze 2024-07-29 22:46:51 +0900
  • 9d0c152f14
    chore(deps): bump github/codeql-action from 3.25.14 to 3.25.15 #3083 dependabot[bot] 2024-07-29 13:40:13 +0000
  • 0f68dfcdae
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.5 to 0.5.6 #3082 dependabot[bot] 2024-07-29 13:32:03 +0000
  • 54ae0f9041 chore(deps): update CPE dictionary index #3079 wagoodman 2024-07-29 01:29:07 +0000
  • d27c709ea2 Added cataloger for SWI Prolog Pack packages #3076 Laurent Goderre 2024-07-24 14:11:16 -0400
  • ffa70fb6b1 Add binary classifier for swipl Laurent Goderre 2024-07-24 11:16:28 -0400
  • 92d9f98f0b update traefik classifier Signed-off-by: witchcraze <witchcraze@gmail.com> #3077 witchcraze 2024-07-27 00:35:54 +0900
  • 2619566112 chore(deps): update stereoscope to 50ce3be7aa1fb8829234ae648215e7907196bfa5 #3075 kzantow 2024-07-26 08:08:15 +0000
  • 1cd75b7d68
    python-cataloger: fix normalization test (#3073) mikcl 2024-07-25 20:45:14 +0100
  • cda4a53520 python-cataloger: fix normalization test #3073 mikcl 2024-07-25 20:16:01 +0100
  • 22f6c43ba5
    Merge remote-tracking branch 'upstream/main' into feat/known-unknowns Keith Zantow 2024-07-25 14:59:59 -0400
  • 4882d2e8ce
    Only match ldflag version if it matches the main module or targets main.version (#3062) Laurent Goderre 2024-07-25 13:56:55 -0400
  • b3848f780f
    python cataloger: allow dots in python package names (#3070) mikcl 2024-07-25 18:56:10 +0100
  • 36f95d6828
    python-cataloger: normalize package names (#3069) mikcl 2024-07-25 18:54:13 +0100