Re: [all] SBOM Generation

2022-07-17 Thread Melloware Inc
Matt, I am a member of a few other open source Java libs and I am interested in what you come up with to follow your lead and add SBOM to them as well. The more pervasive we can make it the better for the whole Java ecosystem overall! Melloware @melloware on GitHub > On Jul 17, 2022, at 12:16

Re: [all] SBOM Generation

2022-07-17 Thread Matt Juntunen
Sounds good. I've moved the discussion to the security-disc...@community.apache.org mailist list [1]. Regards, Matt J [1] https://lists.apache.org/thread/l8661o0t1r8498bhy01wdwg1s2kkhogy On Sun, Jul 17, 2022 at 11:11 AM Gary Gregory wrote: > > On Sun, Jul 17, 2022 at 11:00 AM sebb wrote: > > >

Re: [all] SBOM Generation

2022-07-17 Thread Gary Gregory
On Sun, Jul 17, 2022 at 11:00 AM sebb wrote: > > On Sun, 17 Jul 2022 at 15:45, Matt Juntunen wrote: > > > > Hello all, > > > > Steve Springett recently created a PR [1] for commons-parent that > > introduces the generation of software bill of materials (SBOM) > > artifacts into the build process.

Re: [all] SBOM Generation

2022-07-17 Thread sebb
On Sun, 17 Jul 2022 at 15:45, Matt Juntunen wrote: > > Hello all, > > Steve Springett recently created a PR [1] for commons-parent that > introduces the generation of software bill of materials (SBOM) > artifacts into the build process. First of all, thank you, Steve. > Secondly, I believe this is

[all] SBOM Generation

2022-07-17 Thread Matt Juntunen
Hello all, Steve Springett recently created a PR [1] for commons-parent that introduces the generation of software bill of materials (SBOM) artifacts into the build process. First of all, thank you, Steve. Secondly, I believe this is an important topic that should be addressed by our community. SB