cdx

package
v0.2.0 Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Apr 23, 2025 License: Apache-2.0 Imports: 12 Imported by: 2

Documentation

Overview

Package cdx extracts software dependencies from an CycloneDX SBOM.

Index

Constants

View Source
const (
	// Name is the unique name of this extractor.
	Name = "sbom/cdx"
)

Variables

This section is empty.

Functions

func New added in v0.1.7

func New() filesystem.Extractor

New returns a new instance of the extractor.

Types

type Extractor

type Extractor struct{}

Extractor extracts software dependencies from an CycloneDX SBOM.

func (Extractor) Ecosystem

func (Extractor) Ecosystem(p *extractor.Package) string

Ecosystem returns the OSV Ecosystem of the software extracted by this extractor.

func (Extractor) Extract

Extract parses the CycloneDX SBOM and returns a list purls from the SBOM.

func (Extractor) FileRequired

func (e Extractor) FileRequired(api filesystem.FileAPI) bool

FileRequired returns true if the specified file is a supported cdx file.

func (Extractor) Name

func (e Extractor) Name() string

Name of the extractor.

func (Extractor) Requirements

func (e Extractor) Requirements() *plugin.Capabilities

Requirements of the extractor.

func (Extractor) ToPURL

func (e Extractor) ToPURL(p *extractor.Package) *purl.PackageURL

ToPURL converts a package created by this extractor into a PURL.

func (Extractor) Version

func (e Extractor) Version() int

Version of the extractor.

type Metadata

type Metadata struct {
	PURL *purl.PackageURL
	CPEs []string
}

Metadata holds parsing information for packages extracted from CDX files.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL