Skip to content

Conversation

@stevebarrau
Copy link

Add package_metadata rule to generated BUILD files for wheel libraries to track package provenance using PURL (Package URL) format.

This is then picked up by supply_chain_tools to produce SBOM for python target using external dependencies.

Add package_metadata rule to generated BUILD files for wheel
libraries to track package provenance using PURL (Package URL)
format.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant