Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix: manufacture. Reasoning: https://cyclonedx.org/docs/… #570

Merged
merged 1 commit into from
Feb 4, 2025

Conversation

barblin
Copy link
Contributor

@barblin barblin commented Jan 23, 2025

…1.6/json/#metadata_manufacture deprecated. Use https://cyclonedx.org/docs/1.6/json/#metadata_manufacturer instead

@barblin barblin requested a review from a team as a code owner January 23, 2025 14:49
@barblin barblin force-pushed the fix/manufacture-deprecated branch from 09c53e6 to 21f7eb7 Compare January 23, 2025 14:50
@barblin
Copy link
Contributor Author

barblin commented Jan 23, 2025

Hey, we found that manufacture was empty if all fields are empty. We think the field should not be added in the SBOM at all if it contains no fields.

Also, we found that you use https://cyclonedx.org/docs/1.6/json/#metadata_manufacture, which is deprecated. Probably https://cyclonedx.org/docs/1.6/json/#metadata_manufacturer is the appropreate replacement.

@barblin barblin force-pushed the fix/manufacture-deprecated branch from 21f7eb7 to 0cd9264 Compare January 23, 2025 14:52
@barblin barblin changed the title fix: sort and group slcc list. Reasoning: https://cyclonedx.org/docs/… fix: manufacture. Reasoning: https://cyclonedx.org/docs/… Jan 23, 2025
@barblin
Copy link
Contributor Author

barblin commented Feb 4, 2025

@skhokhlov what do you think?

@barblin barblin force-pushed the fix/manufacture-deprecated branch from 0cd9264 to 5bce04b Compare February 4, 2025 14:53
@barblin barblin requested a review from skhokhlov February 4, 2025 14:59
Copy link
Member

@skhokhlov skhokhlov left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

@barblin thank you for the fix!

@skhokhlov skhokhlov merged commit 9cbee94 into CycloneDX:master Feb 4, 2025
7 checks passed
@github-actions github-actions bot locked as resolved and limited conversation to collaborators Feb 19, 2025
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants