Git Product home page Git Product logo

cyclonedx-node-module's Introduction

shield_npm-version shield_gh-workflow-test shield_license
shield_website shield_slack shield_groups shield_twitter-follow


CycloneDX BOM

This is a so-called meta-package, it does not ship any own functionality, but it is a collection of optional dependencies. This package's dependencies are tools* with one purpose in common:
generate CycloneDX Software-Bill-of-Materials (SBOM) from node-based projects.

ecosystem actual tool
npm @cyclonedx/cyclonedx-npm
pnpm To be announced, suggestions welcome.
Candidate: cyclonedx-node-pnpm

*) You should not depend on this very meta-package, instead depend on the actual tool that fits your specific (eco)system.

In addition, there are some tools to mention, that are not installable as a dependency (yet) but require other/manual methods of installation.

ecosystem actual tool
yarn @cyclonedx/yarn-plugin-cyclonedx

Out of Scope

There are systems, that are not node-targeting, but use node as a runtime/compiler environment, or use node package registry as a distribution system. These systems are out of scope. Therefore, the following tools are not part of this very meta-package.

system actual tool(s)
webpack @cyclonedx/webpack-plugin
esbuild To be announced, suggestions welcome.
Candidate: cyclonedx-esbuild-plugin
Rspack/Rsbuild To be announced, suggestions welcome
Angular @cyclonedx/webpack-plugin with Angular
React @cyclonedx/webpack-plugin with React
Svelte To be announced, suggestions welcome
Parcel To be announced, suggestions welcome
Bower None. (Bower is deprecated!)

Library

If you are looking for a JavaScript/TypeScript library for working with CycloneDX, its data models or serialization, then you might want to try @cyclonedx/cyclonedx-library.

Contributing

You want to have a certain node-based tool added?
Feel free to open issues, bugreports or pull requests.
See the CONTRIBUTING file for details.

Copyright & License

CycloneDX Node Module is Copyright (c) OWASP Foundation. All Rights Reserved.

Permission to modify and redistribute is granted under the terms of the Apache 2.0 license.
See the LICENSE file for the full license.


Previous versions

This project used to be a tool-set and a library to work and generate CycloneDX Software Bill-of-Materials (SBOM) from npm and yarn based projects.
Since version 4.0, this was all split to individual projects, and this project changed to a bare meta-package.

Previous versions of this very package are still available via npmjs versions and github releases

cyclonedx-node-module's People

Contributors

stevespringett avatar jkowalleck avatar coderpatros avatar dependabot[bot] avatar eoftedal avatar dependabot-preview[bot] avatar davideicardi avatar raineinto avatar sophiewigmore avatar c0d3nh4ck avatar peschuster avatar anush-cr avatar webwart-bln avatar mckalea avatar kro29200 avatar koconnor-dev avatar jharwood91 avatar bmodotdev avatar vaaralav avatar jonasac avatar foresteckhardt avatar kabo avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.