Skip to content

Inability to scan a python wheel #3753

@joshbressers

Description

@joshbressers

In the readme for supported ecosystems
https://github.com/anchore/syft?tab=readme-ov-file#supported-ecosystems

it's noted that python wheels are supported

If I try to scan a python wheel with syft, it doesn't seem to know what to do with it

For example

bress@JBRESSERS ➜  p syft .
 ✔ Indexed file system                                                                           .
 ✔ Cataloged contents              cdb4ee2aea69cc6a83331bbe96dc2caa9a299d21329efb0336fc02a82e1839a
   ├── ✔ Packages                        [0 packages]
   └── ✔ Executables                     [0 executables]
[0000]  WARN no explicit name and version provided for directory source, deriving artifact ID from t
[0000]  WARN unable to build link resolution index for filetree search context error=unable to get n
No packages discovered
A newer version of syft is available for download: 1.21.0 (installed version is 1.20.0)

I would expect syft to inspect a wheel file it finds during a scan

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    Status

    Ready

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions