Created
January 6, 2025 14:18
-
-
Save viveksahu26/d1a2b370a9adf2d572382c57e7eee667 to your computer and use it in GitHub Desktop.
hierar-pc-merge-sbom.spdx.json
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
{ | |
"$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json", | |
"bomFormat": "CycloneDX", | |
"specVersion": "1.6", | |
"serialNumber": "urn:uuid:e76ec7c3-5840-46e3-b6ff-fab08835a32e", | |
"version": 1, | |
"metadata": { | |
"timestamp": "2025-01-06T14:03:43Z", | |
"tools": { | |
"components": [ | |
{ | |
"type": "application", | |
"supplier": { | |
"name": "Interlynk", | |
"url": [ | |
"https://interlynk.io" | |
], | |
"contact": [ | |
{ | |
"email": "support@interlynk.io" | |
} | |
] | |
}, | |
"name": "sbomasm", | |
"version": "devel", | |
"description": "Assembler \u0026 Editor for your sboms", | |
"licenses": [ | |
{ | |
"license": { | |
"id": "Apache-2.0" | |
} | |
} | |
] | |
}, | |
{ | |
"type": "application", | |
"supplier": { | |
"name": "anchore" | |
}, | |
"name": "syft", | |
"version": "0.78.0" | |
} | |
] | |
}, | |
"component": { | |
"bom-ref": "lynk:3262a371-7d18-439c-abdc-e8106cd0b4f3", | |
"type": "file", | |
"name": "sbomex", | |
"version": "v1.0.9" | |
}, | |
"licenses": [ | |
{ | |
"license": { | |
"id": "CC-BY-1.0" | |
} | |
} | |
] | |
}, | |
"components": [ | |
{ | |
"bom-ref": "lynk:abca0e8a-8f1e-4324-be61-7adbd7bf9314", | |
"type": "library", | |
"name": "github.com/google/uuid", | |
"version": "v1.3.0", | |
"cpe": "cpe:2.3:a:google:uuid:v1.3.0:*:*:*:*:*:*:*", | |
"purl": "pkg:golang/github.com/google/uuid@v1.3.0", | |
"properties": [ | |
{ | |
"name": "syft:package:foundBy", | |
"value": "go-module-binary-cataloger" | |
}, | |
{ | |
"name": "syft:package:language", | |
"value": "go" | |
}, | |
{ | |
"name": "syft:package:metadataType", | |
"value": "GolangBinMetadata" | |
}, | |
{ | |
"name": "syft:package:type", | |
"value": "go-module" | |
}, | |
{ | |
"name": "syft:location:0:path", | |
"value": "dist/sbomex-linux-amd64" | |
}, | |
{ | |
"name": "syft:metadata:architecture", | |
"value": "amd64" | |
}, | |
{ | |
"name": "syft:metadata:goCompiledVersion", | |
"value": "go1.20" | |
}, | |
{ | |
"name": "syft:metadata:h1Digest", | |
"value": "h1:t6JiXgmwXMjEs8VusXIJk2BXHsn+wx8BZdTaoZ5fu7I=" | |
}, | |
{ | |
"name": "syft:metadata:mainModule", | |
"value": "github.com/interlynk-io/sbomex" | |
} | |
] | |
}, | |
{ | |
"bom-ref": "lynk:13cbec67-1b63-403e-bbfc-967e921319ef", | |
"type": "library", | |
"name": "github.com/inconshreveable/mousetrap", | |
"version": "v1.1.0", | |
"cpe": "cpe:2.3:a:inconshreveable:mousetrap:v1.1.0:*:*:*:*:*:*:*", | |
"purl": "pkg:golang/github.com/inconshreveable/mousetrap@v1.1.0", | |
"properties": [ | |
{ | |
"name": "syft:package:foundBy", | |
"value": "go-module-binary-cataloger" | |
}, | |
{ | |
"name": "syft:package:language", | |
"value": "go" | |
}, | |
{ | |
"name": "syft:package:metadataType", | |
"value": "GolangBinMetadata" | |
}, | |
{ | |
"name": "syft:package:type", | |
"value": "go-module" | |
}, | |
{ | |
"name": "syft:location:0:path", | |
"value": "dist/sbomex-windows-amd64.exe" | |
}, | |
{ | |
"name": "syft:metadata:architecture", | |
"value": "amd64" | |
}, | |
{ | |
"name": "syft:metadata:goCompiledVersion", | |
"value": "go1.20" | |
}, | |
{ | |
"name": "syft:metadata:h1Digest", | |
"value": "h1:wN+x4NVGpMsO7ErUn/mUI3vEoE6Jt13X2s0bqwp9tc8=" | |
}, | |
{ | |
"name": "syft:metadata:mainModule", | |
"value": "github.com/interlynk-io/sbomex" | |
} | |
] | |
}, | |
{ | |
"bom-ref": "lynk:8a5412d5-7904-4c0e-b27d-c229549b236c", | |
"type": "file", | |
"name": "sbomgr", | |
"version": "v2.1.9", | |
"components": [ | |
{ | |
"bom-ref": "lynk:222a178e-4f6c-424a-849a-26c1bd1c4ae2", | |
"type": "library", | |
"name": "billiard", | |
"version": "3.6.0.0", | |
"cpe": "cpe:2.3:a:python-billiard:python-billiard:3.6.0.0:*:*:*:*:*:*:*", | |
"purl": "pkg:pypi/billiard@3.6.0.0", | |
"properties": [ | |
{ | |
"name": "syft:package:foundBy", | |
"value": "sbom-cataloger" | |
}, | |
{ | |
"name": "syft:package:language", | |
"value": "python" | |
}, | |
{ | |
"name": "syft:package:type", | |
"value": "python" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python-billiard:python_billiard:3.6.0.0:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python_billiard:python-billiard:3.6.0.0:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python_billiard:python_billiard:3.6.0.0:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:billiard:python-billiard:3.6.0.0:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:billiard:python_billiard:3.6.0.0:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python-billiard:billiard:3.6.0.0:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python_billiard:billiard:3.6.0.0:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python:python-billiard:3.6.0.0:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python:python_billiard:3.6.0.0:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:billiard:billiard:3.6.0.0:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python:billiard:3.6.0.0:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:location:0:path", | |
"value": "samples/trivy-trivy-ci-test.cdx.json" | |
} | |
] | |
}, | |
{ | |
"bom-ref": "lynk:2e8b9190-399f-4686-91dd-4f33f4432336", | |
"type": "library", | |
"name": "botocore", | |
"version": "1.12.130", | |
"cpe": "cpe:2.3:a:python-botocore:python-botocore:1.12.130:*:*:*:*:*:*:*", | |
"purl": "pkg:pypi/botocore@1.12.130", | |
"properties": [ | |
{ | |
"name": "syft:package:foundBy", | |
"value": "sbom-cataloger" | |
}, | |
{ | |
"name": "syft:package:language", | |
"value": "python" | |
}, | |
{ | |
"name": "syft:package:type", | |
"value": "python" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python-botocore:python_botocore:1.12.130:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python_botocore:python-botocore:1.12.130:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python_botocore:python_botocore:1.12.130:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:botocore:python-botocore:1.12.130:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:botocore:python_botocore:1.12.130:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python-botocore:botocore:1.12.130:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python_botocore:botocore:1.12.130:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python:python-botocore:1.12.130:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python:python_botocore:1.12.130:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:botocore:botocore:1.12.130:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:cpe23", | |
"value": "cpe:2.3:a:python:botocore:1.12.130:*:*:*:*:*:*:*" | |
}, | |
{ | |
"name": "syft:location:0:path", | |
"value": "samples/trivy-trivy-ci-test.cdx.json" | |
} | |
] | |
} | |
] | |
} | |
], | |
"dependencies": [ | |
{ | |
"ref": "lynk:3262a371-7d18-439c-abdc-e8106cd0b4f3", | |
"dependsOn": [ | |
"lynk:8a5412d5-7904-4c0e-b27d-c229549b236c" | |
] | |
} | |
] | |
} |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment