-
-
Notifications
You must be signed in to change notification settings - Fork 741
CBOM: Add CycloneDX v1.6 support for cryptographic assets #3145
Copy link
Copy link
Open
Labels
cdx-1.6Related to CycloneDX specification v1.6Related to CycloneDX specification v1.6enhancementNew feature or requestNew feature or requestp2Non-critical bugs, and features that help organizations to identify and reduce riskNon-critical bugs, and features that help organizations to identify and reduce risk
Milestone
Metadata
Metadata
Assignees
Labels
cdx-1.6Related to CycloneDX specification v1.6Related to CycloneDX specification v1.6enhancementNew feature or requestNew feature or requestp2Non-critical bugs, and features that help organizations to identify and reduce riskNon-critical bugs, and features that help organizations to identify and reduce risk
Type
Fields
Give feedbackNo fields configured for issues without a type.
Current Behavior
Currently, Dependency-Track does not support cryptographic assets.
Proposed Behavior
Add support for cryptographic assets and their dependencies once CycloneDX v1.6 is released.
NOTE: May be able to reach out to IBM Quantum for a git patch or PR, as they've performed an internal fork of DT that adds support for some of these things already.
Checklist