Skip to content

Conversation

@VinnyBarton
Copy link

No description provided.

@VinnyBarton VinnyBarton requested a review from a team as a code owner September 9, 2025 10:26
tools.json Outdated
],
"functions": [
"ANALYSIS",
"PACKAGE_MANAGER_INTEGRATION",
Copy link
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

package manager integration?
could you elaborate on this feature?

Copy link
Author

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Thanks for reviewing @jkowalleck

SecureSBOM has a standalone GitHub Action: https://github.com/shiftleftcyber/secure-sbom-action. In addition we are also close to releasing a standalone SDK that can easily be integrated into various build systems (ie: Jenkins, Bitbucket...). Since "build system" is mentioned in the description of PACKAGE_MANGER_INTEGRATION, I included it in the array.

"PACKAGE_MANAGER_INTEGRATION": "Tools that integrate with build systems and package managers.",

If I am mistaken I would be happy to remove.

@jkowalleck
Copy link
Member

this PR has conflicts

VinnyBarton and others added 2 commits September 16, 2025 06:43
Signed-off-by: Vinny Barton <vbarton@shiftleftcyber.io>
Signed-off-by: Ahmad Nassri <ahmad@socket.dev>
@VinnyBarton VinnyBarton force-pushed the feature/addSecureSBOMToToolCenter branch from f0c2ab5 to 5074e11 Compare September 16, 2025 10:44
@jkowalleck
Copy link
Member

we've changed how the tools.json is managed.
since now, each tool has its own json file in https://github.com/CycloneDX/tool-center/tree/main/tools
please revert your changes to tools.json, and add a dedicated fiele in the tools folder.

@jkowalleck jkowalleck marked this pull request as draft September 25, 2025 16:18
@jkowalleck jkowalleck self-requested a review September 30, 2025 14:09
@jkowalleck jkowalleck marked this pull request as ready for review September 30, 2025 14:09
@jkowalleck jkowalleck marked this pull request as draft October 31, 2025 08:01
],
"functions": [
"ANALYSIS",
"PACKAGE_MANAGER_INTEGRATION",
Copy link
Member

@jkowalleck jkowalleck Oct 31, 2025

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

remove, as discussed here: #69 (comment)

Suggested change
"PACKAGE_MANAGER_INTEGRATION",

@jkowalleck jkowalleck marked this pull request as ready for review October 31, 2025 08:05
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants