Skip to content

Instantly share code, notes, and snippets.

@viveksahu26
Created January 6, 2025 14:18
Show Gist options
  • Save viveksahu26/d1a2b370a9adf2d572382c57e7eee667 to your computer and use it in GitHub Desktop.
Save viveksahu26/d1a2b370a9adf2d572382c57e7eee667 to your computer and use it in GitHub Desktop.
hierar-pc-merge-sbom.spdx.json
{
"$schema": "http://cyclonedx.org/schema/bom-1.6.schema.json",
"bomFormat": "CycloneDX",
"specVersion": "1.6",
"serialNumber": "urn:uuid:e76ec7c3-5840-46e3-b6ff-fab08835a32e",
"version": 1,
"metadata": {
"timestamp": "2025-01-06T14:03:43Z",
"tools": {
"components": [
{
"type": "application",
"supplier": {
"name": "Interlynk",
"url": [
"https://interlynk.io"
],
"contact": [
{
"email": "support@interlynk.io"
}
]
},
"name": "sbomasm",
"version": "devel",
"description": "Assembler \u0026 Editor for your sboms",
"licenses": [
{
"license": {
"id": "Apache-2.0"
}
}
]
},
{
"type": "application",
"supplier": {
"name": "anchore"
},
"name": "syft",
"version": "0.78.0"
}
]
},
"component": {
"bom-ref": "lynk:3262a371-7d18-439c-abdc-e8106cd0b4f3",
"type": "file",
"name": "sbomex",
"version": "v1.0.9"
},
"licenses": [
{
"license": {
"id": "CC-BY-1.0"
}
}
]
},
"components": [
{
"bom-ref": "lynk:abca0e8a-8f1e-4324-be61-7adbd7bf9314",
"type": "library",
"name": "github.com/google/uuid",
"version": "v1.3.0",
"cpe": "cpe:2.3:a:google:uuid:v1.3.0:*:*:*:*:*:*:*",
"purl": "pkg:golang/github.com/google/uuid@v1.3.0",
"properties": [
{
"name": "syft:package:foundBy",
"value": "go-module-binary-cataloger"
},
{
"name": "syft:package:language",
"value": "go"
},
{
"name": "syft:package:metadataType",
"value": "GolangBinMetadata"
},
{
"name": "syft:package:type",
"value": "go-module"
},
{
"name": "syft:location:0:path",
"value": "dist/sbomex-linux-amd64"
},
{
"name": "syft:metadata:architecture",
"value": "amd64"
},
{
"name": "syft:metadata:goCompiledVersion",
"value": "go1.20"
},
{
"name": "syft:metadata:h1Digest",
"value": "h1:t6JiXgmwXMjEs8VusXIJk2BXHsn+wx8BZdTaoZ5fu7I="
},
{
"name": "syft:metadata:mainModule",
"value": "github.com/interlynk-io/sbomex"
}
]
},
{
"bom-ref": "lynk:13cbec67-1b63-403e-bbfc-967e921319ef",
"type": "library",
"name": "github.com/inconshreveable/mousetrap",
"version": "v1.1.0",
"cpe": "cpe:2.3:a:inconshreveable:mousetrap:v1.1.0:*:*:*:*:*:*:*",
"purl": "pkg:golang/github.com/inconshreveable/mousetrap@v1.1.0",
"properties": [
{
"name": "syft:package:foundBy",
"value": "go-module-binary-cataloger"
},
{
"name": "syft:package:language",
"value": "go"
},
{
"name": "syft:package:metadataType",
"value": "GolangBinMetadata"
},
{
"name": "syft:package:type",
"value": "go-module"
},
{
"name": "syft:location:0:path",
"value": "dist/sbomex-windows-amd64.exe"
},
{
"name": "syft:metadata:architecture",
"value": "amd64"
},
{
"name": "syft:metadata:goCompiledVersion",
"value": "go1.20"
},
{
"name": "syft:metadata:h1Digest",
"value": "h1:wN+x4NVGpMsO7ErUn/mUI3vEoE6Jt13X2s0bqwp9tc8="
},
{
"name": "syft:metadata:mainModule",
"value": "github.com/interlynk-io/sbomex"
}
]
},
{
"bom-ref": "lynk:8a5412d5-7904-4c0e-b27d-c229549b236c",
"type": "file",
"name": "sbomgr",
"version": "v2.1.9",
"components": [
{
"bom-ref": "lynk:222a178e-4f6c-424a-849a-26c1bd1c4ae2",
"type": "library",
"name": "billiard",
"version": "3.6.0.0",
"cpe": "cpe:2.3:a:python-billiard:python-billiard:3.6.0.0:*:*:*:*:*:*:*",
"purl": "pkg:pypi/billiard@3.6.0.0",
"properties": [
{
"name": "syft:package:foundBy",
"value": "sbom-cataloger"
},
{
"name": "syft:package:language",
"value": "python"
},
{
"name": "syft:package:type",
"value": "python"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python-billiard:python_billiard:3.6.0.0:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python_billiard:python-billiard:3.6.0.0:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python_billiard:python_billiard:3.6.0.0:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:billiard:python-billiard:3.6.0.0:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:billiard:python_billiard:3.6.0.0:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python-billiard:billiard:3.6.0.0:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python_billiard:billiard:3.6.0.0:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python:python-billiard:3.6.0.0:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python:python_billiard:3.6.0.0:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:billiard:billiard:3.6.0.0:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python:billiard:3.6.0.0:*:*:*:*:*:*:*"
},
{
"name": "syft:location:0:path",
"value": "samples/trivy-trivy-ci-test.cdx.json"
}
]
},
{
"bom-ref": "lynk:2e8b9190-399f-4686-91dd-4f33f4432336",
"type": "library",
"name": "botocore",
"version": "1.12.130",
"cpe": "cpe:2.3:a:python-botocore:python-botocore:1.12.130:*:*:*:*:*:*:*",
"purl": "pkg:pypi/botocore@1.12.130",
"properties": [
{
"name": "syft:package:foundBy",
"value": "sbom-cataloger"
},
{
"name": "syft:package:language",
"value": "python"
},
{
"name": "syft:package:type",
"value": "python"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python-botocore:python_botocore:1.12.130:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python_botocore:python-botocore:1.12.130:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python_botocore:python_botocore:1.12.130:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:botocore:python-botocore:1.12.130:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:botocore:python_botocore:1.12.130:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python-botocore:botocore:1.12.130:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python_botocore:botocore:1.12.130:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python:python-botocore:1.12.130:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python:python_botocore:1.12.130:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:botocore:botocore:1.12.130:*:*:*:*:*:*:*"
},
{
"name": "syft:cpe23",
"value": "cpe:2.3:a:python:botocore:1.12.130:*:*:*:*:*:*:*"
},
{
"name": "syft:location:0:path",
"value": "samples/trivy-trivy-ci-test.cdx.json"
}
]
}
]
}
],
"dependencies": [
{
"ref": "lynk:3262a371-7d18-439c-abdc-e8106cd0b4f3",
"dependsOn": [
"lynk:8a5412d5-7904-4c0e-b27d-c229549b236c"
]
}
]
}
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment