Conversation
|
Force push was just to add the DCO message :) |
tools.yaml
Outdated
| - author | ||
| - name: NTIA Validator for CycloneDX | ||
| publisher: FOSSA | ||
| description: Ensure your CycloneDX SBOM meets NTIA requirements BEFORE you submit. |
There was a problem hiding this comment.
Unsure of what "BEFORE you submit" means. Relative to what process? Borrowing from the "key features" section of the tool website, perhaps the description would better include the bullets from there:
- Detailed validation feedback
- Dependency graph visualization and validation
There was a problem hiding this comment.
Thanks for the feedback. I've updated the description to explain a little better :)
|
Note: The CycloneDX team is in the process of migrating the legacy Tool Center datafile (tools.yaml) to the new Tool Center v2 format (tools.json). This work is expected to be complete by the end of May. Once the migration to the v2 datafile is complete:
Information about the new Tool Center v2 schema can be found at: https://cyclonedx.github.io/tool-center/ |
Signed-off-by: Sara <jsmbeaudet@gmail.com>
Signed-off-by: Sara <jsmbeaudet@gmail.com>
|
we've changed how the |
This is a tool for validating CycloneDX SBOMs against the NTIA's Minimum Required Elements for an SBOM