-
Notifications
You must be signed in to change notification settings - Fork 172
Open
Labels
dependenciesPull requests that update a dependency filePull requests that update a dependency fileno-staleDenotes an issue or PR that should be preserved from going stale.Denotes an issue or PR that should be preserved from going stale.
Description
For your awareness:
As the tools are not a PoC (even since the first release), the long overdue change was conducted: The repo https://github.com/csaf-poc/csaf_distribution moved to https://github.com/gocsaf/csaf. The old URL can still be used for a couple month before it is sunsetted for security reasons.
Also, the license changed from MIT to Apache 2.0 (on the main branch, there is no new release yet).
Currently, that is mentioned in
Line 38 in 1ff758a
| "github.com/csaf-poc/csaf_distribution/v3", # MIT - https://github.com/csaf-poc/csaf_distribution/blob/main/LICENSES/MIT.txt |
I guess that this is imported through Trivy so there is the possibility that you might not need to change anything.
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
dependenciesPull requests that update a dependency filePull requests that update a dependency fileno-staleDenotes an issue or PR that should be preserved from going stale.Denotes an issue or PR that should be preserved from going stale.