Skip to content

Updated and extended dependency + SBOM criteria#186

Merged
eddie-knight merged 17 commits intomainfrom
deps-sbom-criteria
Feb 14, 2025
Merged

Updated and extended dependency + SBOM criteria#186
eddie-knight merged 17 commits intomainfrom
deps-sbom-criteria

Conversation

@eddie-knight
Copy link
Contributor

Rework of #163 by @puerco

puerco and others added 16 commits January 24, 2025 18:06
This commit updates the dependency criteria to add
increasing transparency requirements at each level.

Signed-off-by: Adolfo García Veytia (Puerco) <adolfo.garcia@uservers.net>
Co-authored-by: Ben Cotton <bcotton@funnelfiasco.com>
Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com>
Co-authored-by: Ben Cotton <bcotton@funnelfiasco.com>
Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com>
Co-authored-by: Eleftheria Stein-Kousathana <eleftheria.kousathana@gmail.com>
Signed-off-by: Eddie Knight <knight@linux.com>
suggested update to QA-12

Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com>
better update than the last one

Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com>
an even better update than the last two

Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com>
Co-authored-by: David A. Wheeler <dwheeler@dwheeler.com>
Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com>
Co-authored-by: David A. Wheeler <dwheeler@dwheeler.com>
Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com>
Co-authored-by: David A. Wheeler <dwheeler@dwheeler.com>
Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com>
Co-authored-by: Eleftheria Stein-Kousathana <eleftheria.kousathana@gmail.com>
Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com>
updated 03 mappings

Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com>
Signed-off-by: Eddie Knight <knight@linux.com>
updates to qa03 & 11

Signed-off-by: CRob <69357996+SecurityCRob@users.noreply.github.com>
Signed-off-by: Eddie Knight <knight@linux.com>
Copy link
Member

@puerco puerco left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

sgtm, let's get it in and refine if we need to.

@eddie-knight eddie-knight merged commit 1b9d264 into main Feb 14, 2025
2 checks passed
@eddie-knight eddie-knight deleted the deps-sbom-criteria branch February 14, 2025 19:07
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants