-
Notifications
You must be signed in to change notification settings - Fork 31
Description
My suggestion is to use the Appendix 1 section as a series of samples (not just one), so it can be "library" of examples.
This is the file I am considering:
https://github.com/OpenChain-Project/OpenChain-JWG/blob/master/subgroups/sbom-sg/outcomes/QualityGuide/SBOM-Quality-Guide-TOC.en.md#appendix-1-sbom-sample
My example is below:
Appendix-1. SBOM Sample
This section contains sample SBOM files written in JSON format, which adheres to the specifications and includes exemplary values. It is intended for review by experts familiar with the SPDX and CycloneDX specifications.
To
Appendix-1. SBOM Samples
This section contains sample SBOM file written in JSON format, which adheres to the specifications and includes exemplary values. It is intended for review by experts familiar with the SPDX and CycloneDX specifications.