Skip to content

Add SBOM info #2849

@6543

Description

@6543

we should add a generation step for CycloneDX / SPDX info.

https://github.com/CycloneDX/cdxgen might work ... but I have to test it :)

more info: https://about.gitlab.com/blog/2022/10/25/the-ultimate-guide-to-sboms

but in short it's to let woodpecker be used in the US in environments that are regulated by https://www.cisa.gov/sbom

Metadata

Metadata

Assignees

No one assigned

    Labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions