Skip to content

Commit 41f7a6c

Browse files
anchore-actions-token-generator[bot]kzantowanchore-actions
authored
chore(deps): update Syft to v0.101.0 (#436)
* chore(deps): update Syft to v0.101.0 Signed-off-by: GitHub <noreply@github.com> * chore(test): update snapshots Signed-off-by: anchore-actions <anchore-actions@users.noreply.github.com> --------- Signed-off-by: GitHub <noreply@github.com> Signed-off-by: anchore-actions <anchore-actions@users.noreply.github.com> Co-authored-by: kzantow <kzantow@users.noreply.github.com> Co-authored-by: anchore-actions <anchore-actions@users.noreply.github.com>
1 parent c7f031d commit 41f7a6c

5 files changed

Lines changed: 220 additions & 4 deletions

File tree

dist/attachReleaseAssets/index.js

Lines changed: 1 addition & 1 deletion
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

dist/downloadSyft/index.js

Lines changed: 1 addition & 1 deletion
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

dist/runSyftAction/index.js

Lines changed: 1 addition & 1 deletion
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

src/SyftVersion.ts

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1 +1 @@
1-
export const VERSION = "v0.100.0";
1+
export const VERSION = "v0.101.0";

tests/integration/__snapshots__/formatExports.test.ts.snap

Lines changed: 216 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -2501,6 +2501,12 @@ exports[`SPDX JSON alpine 1`] = `
25012501
"relationshipType": "OTHER",
25022502
"comment": "evident-by: indicates the package's existence is evident by the given file"
25032503
},
2504+
{
2505+
"spdxElementId": "redacted",
2506+
"relatedSpdxElement": "redacted",
2507+
"relationshipType": "OTHER",
2508+
"comment": "evident-by: indicates the package's existence is evident by the given file"
2509+
},
25042510
{
25052511
"spdxElementId": "redacted",
25062512
"relatedSpdxElement": "redacted",
@@ -3206,6 +3212,42 @@ exports[`SPDX JSON debian 1`] = `
32063212
"relationshipType": "OTHER",
32073213
"comment": "evident-by: indicates the package's existence is evident by the given file"
32083214
},
3215+
{
3216+
"spdxElementId": "redacted",
3217+
"relatedSpdxElement": "redacted",
3218+
"relationshipType": "OTHER",
3219+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3220+
},
3221+
{
3222+
"spdxElementId": "redacted",
3223+
"relatedSpdxElement": "redacted",
3224+
"relationshipType": "OTHER",
3225+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3226+
},
3227+
{
3228+
"spdxElementId": "redacted",
3229+
"relatedSpdxElement": "redacted",
3230+
"relationshipType": "OTHER",
3231+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3232+
},
3233+
{
3234+
"spdxElementId": "redacted",
3235+
"relatedSpdxElement": "redacted",
3236+
"relationshipType": "OTHER",
3237+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3238+
},
3239+
{
3240+
"spdxElementId": "redacted",
3241+
"relatedSpdxElement": "redacted",
3242+
"relationshipType": "OTHER",
3243+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3244+
},
3245+
{
3246+
"spdxElementId": "redacted",
3247+
"relatedSpdxElement": "redacted",
3248+
"relationshipType": "OTHER",
3249+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3250+
},
32093251
{
32103252
"spdxElementId": "redacted",
32113253
"relatedSpdxElement": "redacted",
@@ -3826,6 +3868,84 @@ exports[`SPDX JSON npm 1`] = `
38263868
"relationshipType": "OTHER",
38273869
"comment": "evident-by: indicates the package's existence is evident by the given file"
38283870
},
3871+
{
3872+
"spdxElementId": "redacted",
3873+
"relatedSpdxElement": "redacted",
3874+
"relationshipType": "OTHER",
3875+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3876+
},
3877+
{
3878+
"spdxElementId": "redacted",
3879+
"relatedSpdxElement": "redacted",
3880+
"relationshipType": "OTHER",
3881+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3882+
},
3883+
{
3884+
"spdxElementId": "redacted",
3885+
"relatedSpdxElement": "redacted",
3886+
"relationshipType": "OTHER",
3887+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3888+
},
3889+
{
3890+
"spdxElementId": "redacted",
3891+
"relatedSpdxElement": "redacted",
3892+
"relationshipType": "OTHER",
3893+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3894+
},
3895+
{
3896+
"spdxElementId": "redacted",
3897+
"relatedSpdxElement": "redacted",
3898+
"relationshipType": "OTHER",
3899+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3900+
},
3901+
{
3902+
"spdxElementId": "redacted",
3903+
"relatedSpdxElement": "redacted",
3904+
"relationshipType": "OTHER",
3905+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3906+
},
3907+
{
3908+
"spdxElementId": "redacted",
3909+
"relatedSpdxElement": "redacted",
3910+
"relationshipType": "OTHER",
3911+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3912+
},
3913+
{
3914+
"spdxElementId": "redacted",
3915+
"relatedSpdxElement": "redacted",
3916+
"relationshipType": "OTHER",
3917+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3918+
},
3919+
{
3920+
"spdxElementId": "redacted",
3921+
"relatedSpdxElement": "redacted",
3922+
"relationshipType": "OTHER",
3923+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3924+
},
3925+
{
3926+
"spdxElementId": "redacted",
3927+
"relatedSpdxElement": "redacted",
3928+
"relationshipType": "OTHER",
3929+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3930+
},
3931+
{
3932+
"spdxElementId": "redacted",
3933+
"relatedSpdxElement": "redacted",
3934+
"relationshipType": "OTHER",
3935+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3936+
},
3937+
{
3938+
"spdxElementId": "redacted",
3939+
"relatedSpdxElement": "redacted",
3940+
"relationshipType": "OTHER",
3941+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3942+
},
3943+
{
3944+
"spdxElementId": "redacted",
3945+
"relatedSpdxElement": "redacted",
3946+
"relationshipType": "OTHER",
3947+
"comment": "evident-by: indicates the package's existence is evident by the given file"
3948+
},
38293949
{
38303950
"spdxElementId": "redacted",
38313951
"relatedSpdxElement": "redacted",
@@ -4276,6 +4396,48 @@ exports[`SPDX JSON yarn 1`] = `
42764396
"relationshipType": "OTHER",
42774397
"comment": "evident-by: indicates the package's existence is evident by the given file"
42784398
},
4399+
{
4400+
"spdxElementId": "redacted",
4401+
"relatedSpdxElement": "redacted",
4402+
"relationshipType": "OTHER",
4403+
"comment": "evident-by: indicates the package's existence is evident by the given file"
4404+
},
4405+
{
4406+
"spdxElementId": "redacted",
4407+
"relatedSpdxElement": "redacted",
4408+
"relationshipType": "OTHER",
4409+
"comment": "evident-by: indicates the package's existence is evident by the given file"
4410+
},
4411+
{
4412+
"spdxElementId": "redacted",
4413+
"relatedSpdxElement": "redacted",
4414+
"relationshipType": "OTHER",
4415+
"comment": "evident-by: indicates the package's existence is evident by the given file"
4416+
},
4417+
{
4418+
"spdxElementId": "redacted",
4419+
"relatedSpdxElement": "redacted",
4420+
"relationshipType": "OTHER",
4421+
"comment": "evident-by: indicates the package's existence is evident by the given file"
4422+
},
4423+
{
4424+
"spdxElementId": "redacted",
4425+
"relatedSpdxElement": "redacted",
4426+
"relationshipType": "OTHER",
4427+
"comment": "evident-by: indicates the package's existence is evident by the given file"
4428+
},
4429+
{
4430+
"spdxElementId": "redacted",
4431+
"relatedSpdxElement": "redacted",
4432+
"relationshipType": "OTHER",
4433+
"comment": "evident-by: indicates the package's existence is evident by the given file"
4434+
},
4435+
{
4436+
"spdxElementId": "redacted",
4437+
"relatedSpdxElement": "redacted",
4438+
"relationshipType": "OTHER",
4439+
"comment": "evident-by: indicates the package's existence is evident by the given file"
4440+
},
42794441
{
42804442
"spdxElementId": "redacted",
42814443
"relatedSpdxElement": "redacted",
@@ -4371,6 +4533,8 @@ ExternalRef: PACKAGE-MANAGER purl pkg:apk/alpine/libvncserver@0.9.9?arch=x86_64&
43714533
43724534
##### Relationships
43734535
4536+
Relationship: SPDXRef-Package-apk-libvncserver-hash:redacted OTHER SPDXRef-File-lib-apk-db-installed-hash:redacted
4537+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
43744538
Relationship: SPDXRef-Package-apk-libvncserver-hash:redacted OTHER SPDXRef-File-lib-apk-db-installed-hash:redacted
43754539
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
43764540
Relationship: SPDXRef-DocumentRoot-Image-localhost-5000-match-coverage-alpine CONTAINS SPDXRef-Package-apk-libvncserver-hash:redacted
@@ -4617,16 +4781,28 @@ ExtractedText: BSD License
46174781
46184782
##### Relationships
46194783
4784+
Relationship: SPDXRef-Package-java-archive-example-java-app-maven-hash:redacted OTHER SPDXRef-File-java-example-java-app-maven-0.1.0.jar-hash:redacted
4785+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
46204786
Relationship: SPDXRef-Package-java-archive-example-java-app-maven-hash:redacted OTHER SPDXRef-File-java-example-java-app-maven-0.1.0.jar-hash:redacted
46214787
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
46224788
Relationship: SPDXRef-Package-java-archive-joda-time-hash:redacted OTHER SPDXRef-File-java-example-java-app-maven-0.1.0.jar-hash:redacted
46234789
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
4790+
Relationship: SPDXRef-Package-java-archive-joda-time-hash:redacted OTHER SPDXRef-File-java-example-java-app-maven-0.1.0.jar-hash:redacted
4791+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
4792+
Relationship: SPDXRef-Package-deb-apt-hash:redacted OTHER SPDXRef-File-var-lib-dpkg-status-hash:redacted
4793+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
46244794
Relationship: SPDXRef-Package-deb-apt-hash:redacted OTHER SPDXRef-File-var-lib-dpkg-status-hash:redacted
46254795
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
46264796
Relationship: SPDXRef-Package-python-Pygments-hash:redacted OTHER SPDXRef-File-python-dist-info-METADATA-hash:redacted
46274797
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
4798+
Relationship: SPDXRef-Package-python-Pygments-hash:redacted OTHER SPDXRef-File-python-dist-info-METADATA-hash:redacted
4799+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
46284800
Relationship: SPDXRef-Package-gem-bundler-hash:redacted OTHER SPDXRef-File-ruby-specifications-bundler.gemspec-hash:redacted
46294801
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
4802+
Relationship: SPDXRef-Package-gem-bundler-hash:redacted OTHER SPDXRef-File-ruby-specifications-bundler.gemspec-hash:redacted
4803+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
4804+
Relationship: SPDXRef-Package-npm-npm-hash:redacted OTHER SPDXRef-File-javascript-pkg-json-package.json-hash:redacted
4805+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
46304806
Relationship: SPDXRef-Package-npm-npm-hash:redacted OTHER SPDXRef-File-javascript-pkg-json-package.json-hash:redacted
46314807
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
46324808
Relationship: SPDXRef-DocumentRoot-Image-localhost-5000-match-coverage-debian CONTAINS SPDXRef-Package-python-Pygments-hash:redacted
@@ -4895,30 +5071,56 @@ ExternalRef: PACKAGE-MANAGER purl pkg:npm/yallist@4.0.0
48955071
48965072
Relationship: SPDXRef-Package-npm-js-tokens-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
48975073
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5074+
Relationship: SPDXRef-Package-npm-js-tokens-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5075+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5076+
Relationship: SPDXRef-Package-npm-minizlib-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5077+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
48985078
Relationship: SPDXRef-Package-npm-minizlib-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
48995079
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49005080
Relationship: SPDXRef-Package-npm-react-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
49015081
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5082+
Relationship: SPDXRef-Package-npm-react-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5083+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49025084
Relationship: SPDXRef-Package-npm-tar-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
49035085
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5086+
Relationship: SPDXRef-Package-npm-tar-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5087+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5088+
Relationship: SPDXRef-Package-npm-react-is-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5089+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49045090
Relationship: SPDXRef-Package-npm-react-is-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
49055091
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49065092
Relationship: SPDXRef-Package-npm-fs-minipass-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
49075093
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5094+
Relationship: SPDXRef-Package-npm-fs-minipass-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5095+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5096+
Relationship: SPDXRef-Package-npm-mkdirp-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5097+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49085098
Relationship: SPDXRef-Package-npm-mkdirp-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
49095099
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49105100
Relationship: SPDXRef-Package-npm-prop-types-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
49115101
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5102+
Relationship: SPDXRef-Package-npm-prop-types-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5103+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49125104
Relationship: SPDXRef-Package-npm-loose-envify-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
49135105
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5106+
Relationship: SPDXRef-Package-npm-loose-envify-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5107+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5108+
Relationship: SPDXRef-Package-npm-object-assign-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5109+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49145110
Relationship: SPDXRef-Package-npm-object-assign-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
49155111
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49165112
Relationship: SPDXRef-Package-npm-chownr-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
49175113
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5114+
Relationship: SPDXRef-Package-npm-chownr-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5115+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5116+
Relationship: SPDXRef-Package-npm-minipass-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5117+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49185118
Relationship: SPDXRef-Package-npm-minipass-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
49195119
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49205120
Relationship: SPDXRef-Package-npm-yallist-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
49215121
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5122+
Relationship: SPDXRef-Package-npm-yallist-hash:redacted OTHER SPDXRef-File-package-lock.json-hash:redacted
5123+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
49225124
Relationship: SPDXRef-DocumentRoot-Directory-tests-fixtures-npm-project CONTAINS SPDXRef-Package-npm-chownr-hash:redacted
49235125
Relationship: SPDXRef-DocumentRoot-Directory-tests-fixtures-npm-project CONTAINS SPDXRef-Package-npm-fs-minipass-hash:redacted
49245126
Relationship: SPDXRef-DocumentRoot-Directory-tests-fixtures-npm-project CONTAINS SPDXRef-Package-npm-js-tokens-hash:redacted
@@ -5097,18 +5299,32 @@ ExternalRef: PACKAGE-MANAGER purl pkg:npm/trim@0.0.2
50975299
50985300
Relationship: SPDXRef-Package-npm-loose-envify-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
50995301
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5302+
Relationship: SPDXRef-Package-npm-loose-envify-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
5303+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5304+
Relationship: SPDXRef-Package-npm-react-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
5305+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
51005306
Relationship: SPDXRef-Package-npm-react-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
51015307
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
51025308
Relationship: SPDXRef-Package-npm-prop-types-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
51035309
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5310+
Relationship: SPDXRef-Package-npm-prop-types-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
5311+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5312+
Relationship: SPDXRef-Package-npm-js-tokens-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
5313+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
51045314
Relationship: SPDXRef-Package-npm-js-tokens-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
51055315
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
51065316
Relationship: SPDXRef-Package-npm-trim-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
51075317
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5318+
Relationship: SPDXRef-Package-npm-trim-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
5319+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5320+
Relationship: SPDXRef-Package-npm-object-assign-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
5321+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
51085322
Relationship: SPDXRef-Package-npm-object-assign-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
51095323
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
51105324
Relationship: SPDXRef-Package-npm-react-is-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
51115325
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
5326+
Relationship: SPDXRef-Package-npm-react-is-hash:redacted OTHER SPDXRef-File-yarn.lock-hash:redacted
5327+
RelationshipComment: evident-by: indicates the package's existence is evident by the given file
51125328
Relationship: SPDXRef-DocumentRoot-Directory-tests-fixtures-yarn-project CONTAINS SPDXRef-Package-npm-js-tokens-hash:redacted
51135329
Relationship: SPDXRef-DocumentRoot-Directory-tests-fixtures-yarn-project CONTAINS SPDXRef-Package-npm-loose-envify-hash:redacted
51145330
Relationship: SPDXRef-DocumentRoot-Directory-tests-fixtures-yarn-project CONTAINS SPDXRef-Package-npm-object-assign-hash:redacted

0 commit comments

Comments
 (0)