Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

FEAT: render property cdx:reproducible #1054

Open
jkowalleck opened this issue Aug 20, 2023 · 0 comments
Open

FEAT: render property cdx:reproducible #1054

jkowalleck opened this issue Aug 20, 2023 · 0 comments
Labels
enhancement New feature or request good first issue Good for newcomers

Comments

@jkowalleck
Copy link
Member

Is your feature request related to a problem? Please describe.

If a BOM was generated as reproducible, this should be easily visible from the BOM.
Therefore, CycloneDX/cyclonedx-property-taxonomy#70 exists

Describe the solution you'd like

Property cdx:reproducible is added under metadata.properties.
Value is true, if BOM was build in reproducible mode, else value is false.

Describe alternatives you've considered

Property cdx:reproducible could also be added under global properties, which exists since CDX1.5.
This global space does not exist as long as metadata.properties, which exists since CDX1.3.
For a better compatibility version-downwards, let's use the area that exists longer.

Additional context

Idea: use the metadata.properties, because the metadata also houses the timestamp of document creation.

@jkowalleck jkowalleck added enhancement New feature or request good first issue Good for newcomers labels Aug 20, 2023
@jkowalleck jkowalleck changed the title render property cdx:reproducible FEAT: render property cdx:reproducible Sep 3, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request good first issue Good for newcomers
Projects
None yet
Development

No branches or pull requests

1 participant