Skip to content
/ hub-spdx Public

Utility that produces an SPDX report representing a Hub project/version's BOM

License

Notifications You must be signed in to change notification settings

zvr/hub-spdx

Repository files navigation

Overview

The Software Package Data Exchange® (SPDX®) specification (https://spdx.org) is a standard format for communicating the components and licenses associated with software packages. Software Suppliers sometimes use SPDX format to communicate the list of open source components contained in the software they are supplying.

hub-spdx is a utility that generates an SPDX report (RDF format) representing the Bill Of Materials (BOM) of a Black Duck Hub project version.

Build

Build Status Coverage Status License Black Duck Security Risk Quality Gate

Where can I get the latest release?

You can download the latest binary and/or source from GitHub: https://github.com/blackducksoftware/hub-spdx.

Documentation

All documentation for hub-docker-inspector can be found on our public Black Duck Confluence

About

Utility that produces an SPDX report representing a Hub project/version's BOM

Resources

License

Stars

Watchers

Forks

Packages

No packages published