Add SBOM Functionality #4

Open
opened 2022-10-13 01:07:38 -05:00 by DarkFeather · 1 comment
Owner

We should look at generating Software Bill of Materials (SBOM) for content coming out of AniNIX/Maat. Read this article for starting material on how to do this.

We should look at generating Software Bill of Materials (SBOM) for content coming out of AniNIX/Maat. Read [this article](https://fossa.com/blog/generate-software-bill-of-materials-fossa/) for starting material on how to do this.
Author
Owner

A sample product is https://stackshare.io/posts/introducing-the-tech-stack-file -- example SBOM listed on Gist here.

The tool wants to harvest an SSO token before inspecting, so we likely won't use this tool. Could either write or find something that executes on maat runtime, or this could move into Uniglot.

A sample product is https://stackshare.io/posts/introducing-the-tech-stack-file -- example SBOM listed [on Gist here](https://gist.github.com/yonasb/4eeb61ac6bdf380c119419a8da4d242d#file-techstack-yml?ref=stackshare). The tool wants to harvest an SSO token before inspecting, so we likely won't use this tool. Could either write or find something that executes on `maat` runtime, or this could move into Uniglot.
Sign in to join this conversation.
No description provided.