Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / kubernetes-sigs/bom issues and pull requests

#477 - build(deps): bump JamesIves/github-pages-deploy-action from 4.6.4 to 4.6.8 in the all group

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#476 - build(deps): bump actions/checkout from 4.1.7 to 4.2.0 in the all group

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#475 - Switch to go 1.23

Pull Request - State: closed - Opened by saschagrunert 2 months ago - 4 comments
Labels: size/M, lgtm, kind/cleanup, approved, cncf-cla: yes

#474 - build(deps): bump the all group across 1 directory with 3 updates

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 2 comments
Labels: size/M, ok-to-test, release-note-none, lgtm, approved, area/dependency, cncf-cla: yes

#473 - build(deps): bump the all group with 2 updates

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 4 comments
Labels: ok-to-test, release-note-none, size/S, area/dependency, cncf-cla: yes

#472 - build(deps): bump the all group across 1 directory with 2 updates

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 3 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#471 - build(deps): bump actions/upload-artifact from 4.3.6 to 4.4.0 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 4 comments
Labels: ok-to-test, release-note-none, size/XS, area/dependency, cncf-cla: yes

#469 - build(deps): bump sigstore/cosign-installer from 3.5.0 to 3.6.0 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#468 - build(deps): bump the all group with 2 updates

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#467 - build(deps): bump actions/upload-artifact from 4.3.5 to 4.3.6 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#466 - build(deps): bump actions/upload-artifact from 4.3.4 to 4.3.5 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#465 - build(deps): bump the all group with 2 updates

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#464 - Use http agent for requests

Pull Request - State: closed - Opened by puerco 4 months ago - 1 comment
Labels: lgtm, kind/cleanup, size/S, approved, cncf-cla: yes

#463 - build(deps): bump the all group across 1 directory with 6 updates

Pull Request - State: closed - Opened by dependabot[bot] 4 months ago - 6 comments
Labels: size/M, ok-to-test, release-note-none, lgtm, approved, area/dependency, cncf-cla: yes

#462 - Trim license patch from version tag, bump list to v3.24.0

Pull Request - State: closed - Opened by puerco 4 months ago - 1 comment
Labels: kind/bug, lgtm, kind/cleanup, kind/failing-test, size/S, approved, cncf-cla: yes

#461 - build(deps): bump the all group across 1 directory with 7 updates

Pull Request - State: closed - Opened by dependabot[bot] 4 months ago - 7 comments
Labels: size/M, ok-to-test, release-note-none, area/dependency, cncf-cla: yes

#460 - Path separator issue when pulling embedded license zip

Issue - State: open - Opened by ohxeighty 4 months ago - 1 comment
Labels: kind/bug, sig/release

#459 - clean up temporary bom data

Pull Request - State: open - Opened by cpanato 4 months ago - 5 comments
Labels: kind/feature, size/S, approved, cncf-cla: yes

#458 - bom will leave cloned modules in tmp

Issue - State: open - Opened by puerco 4 months ago
Labels: kind/bug, sig/release

#457 - build(deps): bump the all group across 1 directory with 5 updates

Pull Request - State: closed - Opened by dependabot[bot] 4 months ago - 3 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#456 - build(deps): bump the all group across 1 directory with 5 updates

Pull Request - State: closed - Opened by dependabot[bot] 4 months ago - 4 comments
Labels: ok-to-test, release-note-none, size/S, area/dependency, cncf-cla: yes

#455 - build(deps): bump the all group across 1 directory with 7 updates

Pull Request - State: closed - Opened by dependabot[bot] 4 months ago - 4 comments
Labels: size/M, ok-to-test, release-note-none, area/dependency, cncf-cla: yes

#454 - build(deps): bump the all group across 1 directory with 5 updates

Pull Request - State: closed - Opened by dependabot[bot] 4 months ago - 4 comments
Labels: ok-to-test, release-note-none, size/S, area/dependency, cncf-cla: yes

#453 - build(deps): bump the all group across 1 directory with 7 updates

Pull Request - State: closed - Opened by dependabot[bot] 4 months ago - 4 comments
Labels: size/M, ok-to-test, release-note-none, area/dependency, cncf-cla: yes

#452 - Update golangci-lint and fix lints

Pull Request - State: closed - Opened by saschagrunert 4 months ago - 3 comments
Labels: size/XL, lgtm, kind/cleanup, approved, cncf-cla: yes

#451 - build(deps): bump the all group across 1 directory with 4 updates

Pull Request - State: closed - Opened by dependabot[bot] 4 months ago - 4 comments
Labels: ok-to-test, release-note-none, size/S, area/dependency, cncf-cla: yes

#450 - build(deps): bump the all group across 1 directory with 6 updates

Pull Request - State: closed - Opened by dependabot[bot] 5 months ago - 4 comments
Labels: size/M, ok-to-test, release-note-none, area/dependency, cncf-cla: yes

#449 - build(deps): bump the all group across 1 directory with 2 updates

Pull Request - State: closed - Opened by dependabot[bot] 5 months ago - 4 comments
Labels: ok-to-test, release-note-none, size/S, area/dependency, cncf-cla: yes

#448 - build(deps): bump the all group with 6 updates

Pull Request - State: closed - Opened by dependabot[bot] 5 months ago - 4 comments
Labels: size/M, ok-to-test, release-note-none, area/dependency, cncf-cla: yes

#447 - build(deps): bump actions/checkout from 4.1.6 to 4.1.7 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 5 months ago - 4 comments
Labels: ok-to-test, release-note-none, size/S, area/dependency, cncf-cla: yes

#446 - build(deps): bump the all group across 1 directory with 3 updates

Pull Request - State: closed - Opened by dependabot[bot] 5 months ago - 4 comments
Labels: ok-to-test, release-note-none, size/S, area/dependency, cncf-cla: yes

#445 - build(deps): bump goreleaser/goreleaser-action from 5.1.0 to 6.0.0

Pull Request - State: open - Opened by dependabot[bot] 6 months ago - 3 comments
Labels: ok-to-test, release-note-none, size/XS, area/dependency, cncf-cla: yes

#444 - build(deps): bump the all group across 1 directory with 4 updates

Pull Request - State: closed - Opened by dependabot[bot] 6 months ago - 4 comments
Labels: size/M, ok-to-test, release-note-none, area/dependency, cncf-cla: yes

#443 - upload sbom to a GitHub release

Pull Request - State: open - Opened by cpanato 6 months ago - 3 comments
Labels: kind/feature, size/L, do-not-merge/hold, needs-rebase, approved, cncf-cla: yes

#442 - Support reading/writing SBOMs from OCI registries

Issue - State: open - Opened by puerco 6 months ago - 2 comments
Labels: kind/feature, lifecycle/rotten, sig/release

#441 - Support for SBOMs in (signed) in-toto attestations

Issue - State: open - Opened by puerco 6 months ago - 2 comments
Labels: kind/feature, lifecycle/rotten, sig/release

#440 - Refactor internals to use protobom

Issue - State: open - Opened by puerco 6 months ago - 2 comments
Labels: kind/feature, lifecycle/rotten, sig/release

#439 - Push to github release

Issue - State: open - Opened by puerco 6 months ago - 3 comments
Labels: kind/feature, lifecycle/rotten, sig/release

#438 - Record module version

Issue - State: open - Opened by puerco 6 months ago - 2 comments
Labels: kind/feature, lifecycle/rotten, sig/release

#437 - update java-spdx to 1.1.8

Pull Request - State: closed - Opened by cpanato 6 months ago - 8 comments
Labels: lgtm, kind/cleanup, size/XS, approved, cncf-cla: yes

#436 - build(deps): bump the all group across 1 directory with 2 updates

Pull Request - State: closed - Opened by dependabot[bot] 6 months ago - 4 comments
Labels: ok-to-test, release-note-none, size/S, area/dependency, cncf-cla: yes

#435 - build(deps): bump github.com/knqyf263/go-rpmdb from 0.1.0 to 0.1.1 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 6 months ago - 4 comments
Labels: ok-to-test, release-note-none, size/XS, area/dependency, cncf-cla: yes

#434 - build(deps): bump JamesIves/github-pages-deploy-action from 4.6.0 to 4.6.1 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 6 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#433 - build(deps): bump actions/checkout from 4.1.5 to 4.1.6 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 6 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#432 - build(deps): bump github.com/package-url/packageurl-go from 0.1.2 to 0.1.3 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 6 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#431 - build(deps): bump goreleaser/goreleaser-action from 5.0.0 to 5.1.0 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 6 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#430 - build(deps): bump sigs.k8s.io/release-utils from 0.8.1 to 0.8.2 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 6 months ago - 2 comments
Labels: size/M, ok-to-test, release-note-none, lgtm, approved, area/dependency, cncf-cla: yes

#429 - build(deps): bump softprops/action-gh-release from 2.0.4 to 2.0.5 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 6 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#428 - build(deps): bump actions/checkout from 4.1.4 to 4.1.5 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 6 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#427 - build(deps): bump golang.org/x/term from 0.19.0 to 0.20.0 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#426 - build(deps): bump actions/setup-go from 5.0.0 to 5.0.1 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#425 - build(deps): bump kubernetes-sigs/release-actions from 0.1.4 to 0.2.0 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#424 - Enable and fix `perfsprint` linter

Pull Request - State: closed - Opened by saschagrunert 7 months ago - 1 comment
Labels: size/M, lgtm, kind/cleanup, approved, cncf-cla: yes

#423 - build(deps): bump actions/checkout from 4.1.3 to 4.1.4 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#422 - build(deps): bump actions/upload-artifact from 4.3.2 to 4.3.3 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#421 - build(deps): bump actions/checkout from 4.1.2 to 4.1.3 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 6 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#420 - build(deps): bump actions/upload-artifact from 4.3.1 to 4.3.2 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#419 - build(deps): bump JamesIves/github-pages-deploy-action from 4.5.0 to 4.6.0 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#418 - build(deps): bump sigstore/cosign-installer from 3.4.0 to 3.5.0 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#417 - build(deps): bump sigs.k8s.io/release-utils from 0.8.0 to 0.8.1 in the all group

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#416 - build(deps): bump the all group with 3 updates

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#415 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago - 3 comments
Labels: size/M, ok-to-test, release-note-none, lgtm, approved, area/dependency, cncf-cla: yes

#414 - Bump builder image to go1.22-bookworm

Pull Request - State: closed - Opened by puerco 8 months ago - 1 comment
Labels: lgtm, kind/cleanup, size/XS, approved, cncf-cla: yes

#413 - build(deps): bump peaceiris/actions-hugo from 2.6.0 to 3.0.0

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#412 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#411 - remove asciinema tutorial

Pull Request - State: closed - Opened by cpanato 8 months ago - 2 comments
Labels: lgtm, kind/cleanup, size/S, approved, cncf-cla: yes

#410 - upgrade to go1.22

Pull Request - State: closed - Opened by cpanato 8 months ago - 2 comments
Labels: kind/feature, lgtm, size/XS, approved, cncf-cla: yes

#409 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#408 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#407 - build(deps): bump the all group with 2 updates

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#406 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#405 - build(deps): bump softprops/action-gh-release from 1 to 2

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#404 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#403 - build(deps): bump the all group with 3 updates

Pull Request - State: closed - Opened by dependabot[bot] 9 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#402 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 9 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#401 - update license data

Pull Request - State: closed - Opened by cpanato 9 months ago - 1 comment
Labels: lgtm, kind/cleanup, size/XS, approved, cncf-cla: yes

#400 - Update README.md Fix typo

Pull Request - State: closed - Opened by good92 9 months ago - 13 comments
Labels: ok-to-test, lifecycle/rotten, cncf-cla: no, size/XS, needs-rebase

#399 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 9 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#398 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 9 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#397 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 10 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#396 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 10 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#395 - Fix bug in docs

Pull Request - State: closed - Opened by SD-13 10 months ago - 1 comment
Labels: kind/bug, kind/documentation, lgtm, size/XS, approved, cncf-cla: yes

#394 - typo maybe?

Issue - State: closed - Opened by SD-13 10 months ago - 3 comments
Labels: kind/bug, sig/release

#393 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 10 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#392 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 10 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#391 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 10 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#390 - build(deps): bump the all group with 1 update

Pull Request - State: closed - Opened by dependabot[bot] 10 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#389 - build(deps): bump the all group with 2 updates

Pull Request - State: closed - Opened by dependabot[bot] 10 months ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/S, approved, area/dependency, cncf-cla: yes

#388 - Updates for dependabot and release job

Pull Request - State: closed - Opened by cpanato 10 months ago - 2 comments
Labels: size/M, lgtm, kind/cleanup, approved, cncf-cla: yes

#385 - Release v0.5.1 of `bom generate` can panic while main has been fixed, could we get v0.5.2?

Issue - State: closed - Opened by mtardy 10 months ago - 5 comments
Labels: kind/bug, sig/release

#368 - RPM Scanner does not work on layers where /var/lib/rpm is a symlink

Issue - State: closed - Opened by pnasrat about 1 year ago - 9 comments
Labels: kind/bug, lifecycle/rotten, sig/release

#367 - Update asciinema tutorial to use mage not compile-release-tools

Issue - State: closed - Opened by pnasrat about 1 year ago - 4 comments
Labels: kind/bug, kind/documentation, sig/release, lifecycle/stale

#354 - SPDX relationships like `DEPENDENCY_OF` and `TEST_DEPENDENCY_OF` seem to be not supported

Issue - State: closed - Opened by maxhbr about 1 year ago - 9 comments
Labels: kind/bug, lifecycle/rotten, sig/release

#338 - Replace `golang.org/x/tools/go/vcs`

Issue - State: open - Opened by saschagrunert about 1 year ago - 7 comments
Labels: kind/deprecation

#288 - build(deps): bump sigstore/cosign-installer from 3.0.4 to 3.0.5

Pull Request - State: closed - Opened by dependabot[bot] over 1 year ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#287 - build(deps): bump github.com/sirupsen/logrus from 1.9.1 to 1.9.2

Pull Request - State: closed - Opened by dependabot[bot] over 1 year ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#286 - build(deps): bump sigstore/cosign-installer from 3.0.3 to 3.0.4

Pull Request - State: closed - Opened by dependabot[bot] over 1 year ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes

#285 - build(deps): bump github.com/google/go-containerregistry from 0.14.0 to 0.15.2

Pull Request - State: open - Opened by dependabot[bot] over 1 year ago - 3 comments
Labels: size/M, ok-to-test, release-note-none, area/dependency, cncf-cla: yes

#284 - build(deps): bump github.com/sirupsen/logrus from 1.9.0 to 1.9.1

Pull Request - State: closed - Opened by dependabot[bot] over 1 year ago - 2 comments
Labels: ok-to-test, release-note-none, lgtm, size/XS, approved, area/dependency, cncf-cla: yes