@@ -2,10 +2,10 @@ SPDXVersion: SPDX-2.3
2
2
DataLicense: CC0-1.0
3
3
SPDXID: SPDXRef-DOCUMENT
4
4
DocumentName: Python-cve-bin-tool
5
- DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-884e312b-e5de-47e0-b600-1663af54aead
5
+ DocumentNamespace: http://spdx.org/spdxdocs/Python-cve-bin-tool-fa29f6d4-6cf8-4604-84f1-ac36679edc65
6
6
LicenseListVersion: 3.26
7
7
Creator: Tool: sbom4python-0.12.4
8
- Created: 2025-07-21T00:54:46Z
8
+ Created: 2025-07-28T00:56:36Z
9
9
CreatorComment: <text>SBOM Type: Build - This document has been automatically generated.</text>
10
10
#####
11
11
867
867
PackageDownloadLocation: https://pypi.org/project/google-apitools/0.5.32/#files
868
868
FilesAnalyzed: false
869
869
PackageHomePage: http://github.com/google/apitools
870
- PackageChecksum: SHA256: b78f74116558e0476e19501b5b4b2ac7c93261a69c5449c861ea95cbc853c688
871
870
PackageLicenseDeclared: NOASSERTION
872
871
PackageLicenseConcluded: Apache-2.0
873
872
PackageLicenseComments: <text>google-apitools declares Apache 2.0 which is not currently a valid SPDX License identifier or expression.</text>
874
873
PackageCopyrightText: NOASSERTION
875
874
PackageSummary: <text>client libraries for humans</text>
876
- ReleaseDate: 2021-05-05T22:12:58Z
875
+ ReleaseDate: 2023-12-12T17:40:13Z
877
876
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected]
878
877
ExternalRef: SECURITY cpe23Type cpe:2.3:a:craig_citro:google-apitools:0.5.32:*:*:*:*:*:*:*
879
878
#####
@@ -1223,12 +1222,11 @@ PackageSupplier: Person: Anthony Harrison (
[email protected] )
1223
1222
PackageDownloadLocation: https://pypi.org/project/csaf-tool/0.3.2/#files
1224
1223
FilesAnalyzed: false
1225
1224
PackageHomePage: https://github.com/anthonyharrison/csaf
1226
- PackageChecksum: SHA256: 7e5559cb522eb76e3acad39a7bf9ba1b81e5a6224099d511a4c9c2dcf36caa16
1227
1225
PackageLicenseDeclared: MIT
1228
1226
PackageLicenseConcluded: MIT
1229
1227
PackageCopyrightText: NOASSERTION
1230
1228
PackageSummary: <text>CSAF generator and analyser</text>
1231
- ReleaseDate: 2024-06-12T20:10:06Z
1229
+ ReleaseDate: 2024-08-29T20:36:52Z
1232
1230
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/
[email protected]
1233
1231
ExternalRef: SECURITY cpe23Type cpe:2.3:a:anthony_harrison:csaf-tool:0.3.2:*:*:*:*:*:*:*
1234
1232
#####
@@ -1253,21 +1251,21 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:the_purl_authors:packageurl-python:0.1
1253
1251
1254
1252
PackageName: rich
1255
1253
SPDXID: SPDXRef-60-rich
1256
- PackageVersion: 14.0 .0
1254
+ PackageVersion: 14.1 .0
1257
1255
PrimaryPackagePurpose: LIBRARY
1258
1256
PackageSupplier: Person: Will McGugan (
[email protected] )
1259
- PackageDownloadLocation: https://pypi.org/project/rich/14.0 .0/#files
1257
+ PackageDownloadLocation: https://pypi.org/project/rich/14.1 .0/#files
1260
1258
FilesAnalyzed: false
1261
1259
PackageHomePage: https://github.com/Textualize/rich
1262
- PackageChecksum: SHA256: 1c9491e1951aac09caffd42f448ee3d04e58923ffe14993f6e83068dc395d7e0
1260
+ PackageChecksum: SHA256: 536f5f1785986d6dbdea3c75205c473f970777b4a0d6c6dd1b696aa05a3fa04f
1263
1261
PackageLicenseDeclared: MIT
1264
1262
PackageLicenseConcluded: MIT
1265
1263
PackageCopyrightText: NOASSERTION
1266
1264
PackageSummary: <text>Render rich text, tables, progress bars, syntax highlighting, markdown and more to the terminal</text>
1267
- ReleaseDate: 2025-03-30T14:15:12Z
1265
+ ReleaseDate: 2025-07-25T07:32:56Z
1268
1266
ExternalRef: OTHER documentation https://rich.readthedocs.io/en/latest/
1269
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/rich@14.0 .0
1270
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:will_mcgugan:rich:14.0 .0:*:*:*:*:*:*:*
1267
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/rich@14.1 .0
1268
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:will_mcgugan:rich:14.1 .0:*:*:*:*:*:*:*
1271
1269
#####
1272
1270
1273
1271
PackageName: markdown-it-py
@@ -1396,10 +1394,10 @@ ExternalRef: SECURITY cpe23Type cpe:2.3:a:chris_p:plotly:6.2.0:*:*:*:*:*:*:*
1396
1394
1397
1395
PackageName: narwhals
1398
1396
SPDXID: SPDXRef-66-narwhals
1399
- PackageVersion: 1.47 .1
1397
+ PackageVersion: 1.48 .1
1400
1398
PrimaryPackagePurpose: LIBRARY
1401
1399
PackageSupplier: Person: Marco Gorelli (
[email protected] )
1402
- PackageDownloadLocation: https://pypi.org/project/narwhals/1.47 .1/#files
1400
+ PackageDownloadLocation: https://pypi.org/project/narwhals/1.48 .1/#files
1403
1401
FilesAnalyzed: false
1404
1402
PackageHomePage: https://github.com/narwhals-dev/narwhals
1405
1403
PackageLicenseDeclared: NOASSERTION
@@ -1411,8 +1409,8 @@ ReleaseDate: 2025-06-26T16:20:40Z
1411
1409
ExternalRef: OTHER documentation https://narwhals-dev.github.io/narwhals/
1412
1410
ExternalRef: OTHER vcs https://github.com/narwhals-dev/narwhals
1413
1411
ExternalRef: OTHER issue-tracker https://github.com/narwhals-dev/narwhals/issues
1414
- ExternalRef: PACKAGE-MANAGER purl pkg:pypi/narwhals@1.47 .1
1415
- ExternalRef: SECURITY cpe23Type cpe:2.3:a:marco_gorelli:narwhals:1.47 .1:*:*:*:*:*:*:*
1412
+ ExternalRef: PACKAGE-MANAGER purl pkg:pypi/narwhals@1.48 .1
1413
+ ExternalRef: SECURITY cpe23Type cpe:2.3:a:marco_gorelli:narwhals:1.48 .1:*:*:*:*:*:*:*
1416
1414
#####
1417
1415
1418
1416
PackageName: python-gnupg
@@ -1699,7 +1697,6 @@ Relationship: SPDXRef-57-lib4vex DEPENDS_ON SPDXRef-58-csaf-tool
1699
1697
Relationship: SPDXRef-57-lib4vex DEPENDS_ON SPDXRef-59-packageurl-python
1700
1698
Relationship: SPDXRef-58-csaf-tool DEPENDS_ON SPDXRef-59-packageurl-python
1701
1699
Relationship: SPDXRef-58-csaf-tool DEPENDS_ON SPDXRef-60-rich
1702
- Relationship: SPDXRef-60-rich DEPENDS_ON SPDXRef-6-typing-extensions
1703
1700
Relationship: SPDXRef-60-rich DEPENDS_ON SPDXRef-61-markdown-it-py
1704
1701
Relationship: SPDXRef-60-rich DEPENDS_ON SPDXRef-63-pygments
1705
1702
Relationship: SPDXRef-61-markdown-it-py DEPENDS_ON SPDXRef-62-mdurl
0 commit comments