Open
Description
target: a new file "component_deduplication" in https://github.com/CycloneDX/cyclonedx-node-npm/tree/main/docs
related docs:
goal:
- describe the need and reasoning
- have (alternative) processes described, how de-duplication could be achieved. which properties make components identical?
{group,name,version,download-location,hashes,...}
? - have a clear decision which process is to be used
💁 want to discuss? please use #307
-> there we have threats, votes, and everything we need