Skip to content

Commit 6862276

Browse files
committed
Update validator SBOM: add recursive dependencies
Signed-off-by: Marc-Etienne Vargenau <marc-etienne.vargenau@nokia.com>
1 parent d9e7958 commit 6862276

File tree

3 files changed

+1201
-10
lines changed

3 files changed

+1201
-10
lines changed

tools/openchain_telco_sbom_validator/open-source-compliance-artifacts/openchain-telco-sbom-validator-0.3.2.spdx

Lines changed: 276 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,7 @@ DocumentNamespace: https://nokia.com/spdx/openchain-telco-sbom-validator-0.3.2
88
LicenseListVersion: 3.27
99
Creator: Organization: Nokia
1010
Creator: Tool: Nokia Compliance Tool - 1.0
11-
Created: 2025-07-29T10:45:51Z
11+
Created: 2025-09-29T12:42:16Z
1212
CreatorComment: CISA SBOM type: Source
1313

1414
##### Package: openchain-telco-sbom-validator
@@ -27,6 +27,111 @@ PackageChecksum: SHA256: c95d3c0d517ba84594ec8ebb036b63b53b863962b5f10f6a9fe3640
2727
PackageChecksum: MD5: b40cb73f6ced71b09db9c3e06b542d31
2828
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/openchain-telco-sbom-validator@0.3.2
2929

30+
##### Package: beartype
31+
32+
PackageName: beartype
33+
SPDXID: SPDXRef-Package-python-beartype
34+
PackageVersion: 0.21.0
35+
PackageSupplier: Organization: https://pypi.org
36+
PackageDownloadLocation: https://files.pythonhosted.org/packages/0d/f9/21e5a9c731e14f08addd53c71fea2e70794e009de5b98e6a2c3d2f3015d6/beartype-0.21.0.tar.gz
37+
FilesAnalyzed: false
38+
PackageLicenseConcluded: MIT
39+
PackageLicenseDeclared: MIT
40+
PackageCopyrightText: © Copyright 2014-2025 Beartype authors.
41+
PackageChecksum: SHA256: f9a5078f5ce87261c2d22851d19b050b64f6a805439e8793aecf01ce660d3244
42+
PackageChecksum: MD5: 4b2e6c98ac361aeaa3d33058e662a9fe
43+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/beartype@0.21.0
44+
45+
##### Package: boolean-py
46+
47+
PackageName: boolean-py
48+
SPDXID: SPDXRef-Package-python-boolean-py
49+
PackageVersion: 5.0
50+
PackageSupplier: Organization: https://pypi.org
51+
PackageDownloadLocation: https://files.pythonhosted.org/packages/c4/cf/85379f13b76f3a69bca86b60237978af17d6aa0bc5998978c3b8cf05abb2/boolean_py-5.0.tar.gz
52+
FilesAnalyzed: false
53+
PackageLicenseConcluded: BSD-2-Clause
54+
PackageLicenseDeclared: BSD-2-Clause
55+
PackageCopyrightText: Copyright (c) Sebastian Kraemer, basti.kr@gmail.com and others
56+
PackageChecksum: SHA256: 60cbc4bad079753721d32649545505362c754e121570ada4658b852a3a318d95
57+
PackageChecksum: MD5: 1a7ec75805094c91980b9f11240853c0
58+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/boolean-py@5.0
59+
60+
##### Package: certifi
61+
62+
PackageName: certifi
63+
SPDXID: SPDXRef-Package-python-certifi
64+
PackageVersion: 2025.8.3
65+
PackageSupplier: Organization: https://pypi.org
66+
PackageDownloadLocation: https://files.pythonhosted.org/packages/dc/67/960ebe6bf230a96cda2e0abcf73af550ec4f090005363542f0765df162e0/certifi-2025.8.3.tar.gz
67+
FilesAnalyzed: false
68+
PackageLicenseConcluded: MPL-2.0
69+
PackageLicenseDeclared: MPL-2.0
70+
PackageCopyrightText: Copyright Kenneth Reitz me@kennethreitz.com
71+
PackageChecksum: SHA256: e564105f78ded564e3ae7c923924435e1daa7463faeab5bb932bc53ffae63407
72+
PackageChecksum: MD5: bb7ee7c24518dc4314ce7a83ca24263f
73+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/certifi@2025.8.3
74+
75+
##### Package: charset-normalizer
76+
77+
PackageName: charset-normalizer
78+
SPDXID: SPDXRef-Package-python-charset-normalizer
79+
PackageVersion: 3.4.3
80+
PackageSupplier: Organization: https://pypi.org
81+
PackageDownloadLocation: https://files.pythonhosted.org/packages/83/2d/5fd176ceb9b2fc619e63405525573493ca23441330fcdaee6bef9460e924/charset_normalizer-3.4.3.tar.gz
82+
FilesAnalyzed: false
83+
PackageLicenseConcluded: MIT
84+
PackageLicenseDeclared: MIT
85+
PackageCopyrightText: Copyright © Ahmed TAHRI @Ousret.
86+
PackageChecksum: SHA256: 6fce4b8500244f6fcb71465d4a4930d132ba9ab8e71a7859e6a5d59851068d14
87+
PackageChecksum: MD5: 773b693324f251206cc5dcbec7dd2d4c
88+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/charset-normalizer@3.4.3
89+
90+
##### Package: click
91+
92+
PackageName: click
93+
SPDXID: SPDXRef-Package-python-click
94+
PackageVersion: 8.3.0
95+
PackageSupplier: Organization: https://pypi.org
96+
PackageDownloadLocation: https://files.pythonhosted.org/packages/46/61/de6cd827efad202d7057d93e0fed9294b96952e188f7384832791c7b2254/click-8.3.0.tar.gz
97+
FilesAnalyzed: false
98+
PackageLicenseConcluded: BSD-3-Clause
99+
PackageLicenseDeclared: BSD-3-Clause
100+
PackageCopyrightText: Copyright Pallets
101+
PackageChecksum: SHA256: e7b8232224eba16f4ebe410c25ced9f7875cb5f3263ffc93cc3e8da705e229c4
102+
PackageChecksum: MD5: fa228744ff03a339957e847fb7890823
103+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/click@8.3.0
104+
105+
##### Package: idna
106+
107+
PackageName: idna
108+
SPDXID: SPDXRef-Package-python-idna
109+
PackageVersion: 3.10
110+
PackageSupplier: Organization: https://pypi.org
111+
PackageDownloadLocation: https://files.pythonhosted.org/packages/f1/70/7703c29685631f5a7590aa73f1f1d3fa9a380e654b86af429e0934a32f7d/idna-3.10.tar.gz
112+
FilesAnalyzed: false
113+
PackageLicenseConcluded: BSD-3-Clause
114+
PackageLicenseDeclared: BSD-3-Clause
115+
PackageCopyrightText: Copyright (c) 2013-2025, Kim Davies and contributors. All rights reserved.
116+
PackageChecksum: SHA256: 12f65c9b470abda6dc35cf8e63cc574b1c52b11df2c86030af0ac09b01b13ea9
117+
PackageChecksum: MD5: 28448b00665099117b6daa9887812cc4
118+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/idna@3.10
119+
120+
##### Package: license-expression
121+
122+
PackageName: license-expression
123+
SPDXID: SPDXRef-Package-python-license-expression
124+
PackageVersion: 30.4.4
125+
PackageSupplier: Organization: https://pypi.org
126+
PackageDownloadLocation: https://files.pythonhosted.org/packages/40/71/d89bb0e71b1415453980fd32315f2a037aad9f7f70f695c7cec7035feb13/license_expression-30.4.4.tar.gz
127+
FilesAnalyzed: false
128+
PackageLicenseConcluded: Apache-2.0
129+
PackageLicenseDeclared: Apache-2.0
130+
PackageCopyrightText: Copyright (c) nexB Inc. and others.
131+
PackageChecksum: SHA256: 73448f0aacd8d0808895bdc4b2c8e01a8d67646e4188f887375398c761f340fd
132+
PackageChecksum: MD5: 933c9e708aba564bec664357771709d7
133+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/license-expression@30.4.4
134+
30135
##### Package: ntia-conformance-checker
31136

32137
PackageName: ntia-conformance-checker
@@ -37,7 +142,7 @@ PackageDownloadLocation: https://files.pythonhosted.org/packages/f6/1b/af3e028ff
37142
FilesAnalyzed: false
38143
PackageLicenseConcluded: Apache-2.0
39144
PackageLicenseDeclared: Apache-2.0
40-
PackageCopyrightText: 2024 SPDX contributors
145+
PackageCopyrightText: Copyright 2024 SPDX contributors
41146
PackageChecksum: SHA256: 474ae33d7477c9db361a53dac3137066f94f56f0ac42c3e65f4de3ddb4c2c326
42147
PackageChecksum: MD5: 475ad3e19c1e7ed6f0b4c3783b5cd219
43148
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/ntia-conformance-checker@3.2.0
@@ -57,6 +162,21 @@ PackageChecksum: SHA256: 5db592a990b60bc02446033c50fb1803a26c5124cd72c5a2cd1b8ea
57162
PackageChecksum: MD5: bc2a019812c3f3afe2186b18bcc4319c
58163
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/packageurl-python@0.17.1
59164

165+
##### Package: ply
166+
167+
PackageName: ply
168+
SPDXID: SPDXRef-Package-python-ply
169+
PackageVersion: 3.11
170+
PackageSupplier: Organization: https://pypi.org
171+
PackageDownloadLocation: https://files.pythonhosted.org/packages/e5/69/882ee5c9d017149285cab114ebeab373308ef0f874fcdac9beb90e0ac4da/ply-3.11.tar.gz
172+
FilesAnalyzed: false
173+
PackageLicenseConcluded: Apache-2.0
174+
PackageLicenseDeclared: Apache-2.0
175+
PackageCopyrightText: Copyright (C) 2005-2025, David Beazley
176+
PackageChecksum: SHA256: 00c7c1aaa88358b9c765b6d3000c6eec0ba42abca5351b095321aef446081da3
177+
PackageChecksum: MD5: 6465f602e656455affcd7c5734c638f8
178+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/ply@3.11
179+
60180
##### Package: prettytable
61181

62182
PackageName: prettytable
@@ -72,6 +192,51 @@ PackageChecksum: SHA256: 3c64b31719d961bf69c9a7e03d0c1e477320906a98da63952bc6698
72192
PackageChecksum: MD5: 85a6f1812e31ea2dcf8119f219c1a032
73193
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/prettytable@3.16.0
74194

195+
##### Package: pyparsing
196+
197+
PackageName: pyparsing
198+
SPDXID: SPDXRef-Package-python-pyparsing
199+
PackageVersion: 3.2.5
200+
PackageSupplier: Organization: https://pypi.org
201+
PackageDownloadLocation: https://files.pythonhosted.org/packages/f2/a5/181488fc2b9d093e3972d2a472855aae8a03f000592dbfce716a512b3359/pyparsing-3.2.5.tar.gz
202+
FilesAnalyzed: false
203+
PackageLicenseConcluded: MIT
204+
PackageLicenseDeclared: MIT
205+
PackageCopyrightText: Copyright (c) Paul T. McGuire
206+
PackageChecksum: SHA256: 2df8d5b7b2802ef88e8d016a2eb9c7aeaa923529cd251ed0fe4608275d4105b6
207+
PackageChecksum: MD5: 49f6a72433130541fd92c56b110061d2
208+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/pyparsing@3.2.5
209+
210+
##### Package: pyyaml
211+
212+
PackageName: pyyaml
213+
SPDXID: SPDXRef-Package-python-pyyaml
214+
PackageVersion: 6.0.3
215+
PackageSupplier: Organization: https://pypi.org
216+
PackageDownloadLocation: https://files.pythonhosted.org/packages/05/8e/961c0007c59b8dd7729d542c61a4d537767a59645b82a0b521206e1e25c2/pyyaml-6.0.3.tar.gz
217+
FilesAnalyzed: false
218+
PackageLicenseConcluded: MIT
219+
PackageLicenseDeclared: MIT
220+
PackageCopyrightText: Copyright Kirill Simonov xi@resolvent.net and contributors
221+
PackageChecksum: SHA256: d76623373421df22fb4cf8817020cbb7ef15c725b9d5e45f17e189bfc384190f
222+
PackageChecksum: MD5: dbc6f815cd75160ccf12e470be1c8d6e
223+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/pyyaml@6.0.3
224+
225+
##### Package: rdflib
226+
227+
PackageName: rdflib
228+
SPDXID: SPDXRef-Package-python-rdflib
229+
PackageVersion: 7.2.1
230+
PackageSupplier: Organization: https://pypi.org
231+
PackageDownloadLocation: https://files.pythonhosted.org/packages/8d/99/d2fec85e5f6bdfe4367dea143119cb4469bf48710487939df0abf7e22003/rdflib-7.2.1.tar.gz
232+
FilesAnalyzed: false
233+
PackageLicenseConcluded: BSD-3-Clause
234+
PackageLicenseDeclared: BSD-3-Clause
235+
PackageCopyrightText: Copyright the RDFLib authors
236+
PackageChecksum: SHA256: cf9b7fa25234e8925da8b1fb09700f8349b5f0f100e785fb4260e737308292ac
237+
PackageChecksum: MD5: dce6e85ebf83d0a095bc83d1665188ec
238+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/rdflib@7.2.1
239+
75240
##### Package: requests
76241

77242
PackageName: requests
@@ -83,10 +248,40 @@ FilesAnalyzed: false
83248
PackageLicenseConcluded: Apache-2.0
84249
PackageLicenseDeclared: Apache-2.0
85250
PackageCopyrightText: Copyright 2019 Kenneth Reitz. All rights reserved.
86-
PackageChecksum: SHA256: 27d0316682c8a29834d3264820024b62a36942083d52caf2f14c0591336d3422
251+
PackageChecksum: SHA256: 27d0316682c8a29834d3264820024b62a36942083d52caf2f14c0591336d3422
87252
PackageChecksum: MD5: 4a380c14fe0f4465c9dbf79ffacefd8f
88253
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/requests@2.32.4
89254

255+
##### Package: semantic-version
256+
257+
PackageName: semantic-version
258+
SPDXID: SPDXRef-Package-python-semantic-version
259+
PackageVersion: 2.10.0
260+
PackageSupplier: Organization: https://pypi.org
261+
PackageDownloadLocation: https://files.pythonhosted.org/packages/7d/31/f2289ce78b9b473d582568c234e104d2a342fd658cc288a7553d83bb8595/semantic_version-2.10.0.tar.gz
262+
FilesAnalyzed: false
263+
PackageLicenseConcluded: BSD-2-Clause
264+
PackageLicenseDeclared: BSD-2-Clause
265+
PackageCopyrightText: Copyright (c) The python-semanticversion project
266+
PackageChecksum: SHA256: bdabb6d336998cbb378d4b9db3a4b56a1e3235701dc05ea2690d9a997ed5041c
267+
PackageChecksum: MD5: e48abef93ba69abcd4eaf4640edfc38b
268+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/semantic-version@2.10.0
269+
270+
##### Package: spdx-python-model
271+
272+
PackageName: spdx-python-model
273+
SPDXID: SPDXRef-Package-python-spdx-python-model
274+
PackageVersion: 0.0.3
275+
PackageSupplier: Organization: https://pypi.org
276+
PackageDownloadLocation: https://files.pythonhosted.org/packages/bd/d7/1806750dbcc2b11f04f863ec6be52a7e2a2ff7b6a572e4dbb4cae8ffdc1e/spdx_python_model-0.0.3.tar.gz
277+
FilesAnalyzed: false
278+
PackageLicenseConcluded: Apache-2.0
279+
PackageLicenseDeclared: Apache-2.0
280+
PackageCopyrightText: Copyright the spdx-python-model contributors
281+
PackageChecksum: SHA256: 1a10e476d9b1ffac5363586a20e653dd71d9ff2bb9d4534462fb1208e978035d
282+
PackageChecksum: MD5: 593d5c3d1918474bcba794f2859d615e
283+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/spdx-python-model@0.0.3
284+
90285
##### Package: spdx-tools
91286

92287
PackageName: spdx-tools
@@ -97,11 +292,41 @@ PackageDownloadLocation: https://files.pythonhosted.org/packages/f1/99/3470b28dc
97292
FilesAnalyzed: false
98293
PackageLicenseConcluded: Apache-2.0
99294
PackageLicenseDeclared: Apache-2.0
100-
PackageCopyrightText: 2023 spdx contributors
295+
PackageCopyrightText: Copyright 2023 spdx contributors
101296
PackageChecksum: SHA256: 68b8f9ce2893b5216bd90b2e63f1c821c2884e4ebc4fd295ebbf1fa8b8a94b93
102297
PackageChecksum: MD5: ebbd9ca439294df364a99e4f491fbbe8
103298
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/spdx-tools@0.8.3
104299

300+
##### Package: uritools
301+
302+
PackageName: uritools
303+
SPDXID: SPDXRef-Package-python-uritools
304+
PackageVersion: 5.0.0
305+
PackageSupplier: Organization: https://pypi.org
306+
PackageDownloadLocation: https://files.pythonhosted.org/packages/36/b1/e482d43db3209663b82a59e37cf31f641254180190667c6b0bf18a297de8/uritools-5.0.0.tar.gz
307+
FilesAnalyzed: false
308+
PackageLicenseConcluded: MIT
309+
PackageLicenseDeclared: MIT
310+
PackageCopyrightText: Copyright (c) 2014-2025 Thomas Kemmer.
311+
PackageChecksum: SHA256: 68180cad154062bd5b5d9ffcdd464f8de6934414b25462ae807b00b8df9345de
312+
PackageChecksum: MD5: 28cf165ca4b711b91bcec2d569cb1415
313+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/uritools@5.0.0
314+
315+
##### Package: urllib3
316+
317+
PackageName: urllib3
318+
SPDXID: SPDXRef-Package-python-urllib3
319+
PackageVersion: 2.5.0
320+
PackageSupplier: Organization: https://pypi.org
321+
PackageDownloadLocation: https://files.pythonhosted.org/packages/15/22/9ee70a2574a4f4599c47dd506532914ce044817c7752a79b6a51286319bc/urllib3-2.5.0.tar.gz
322+
FilesAnalyzed: false
323+
PackageLicenseConcluded: MIT
324+
PackageLicenseDeclared: MIT
325+
PackageCopyrightText: Copyright (c) 2008-2020 Andrey Petrov and contributors.
326+
PackageChecksum: SHA256: 3fc47733c7e419d4bc3f6b3dc2b4f890bb743906a30d56ba4a5bfa4bbff92760
327+
PackageChecksum: MD5: 2b8a86438e4d35fbc90572dbdb424759
328+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/urllib3@2.5.0
329+
105330
##### Package: validators
106331

107332
PackageName: validators
@@ -117,12 +342,59 @@ PackageChecksum: SHA256: 992d6c48a4e77c81f1b4daba10d16c3a9bb0dbb79b3a19ea847ff09
117342
PackageChecksum: MD5: 8376f37ec2028053cee8f4789dadd947
118343
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/validators@0.35.0
119344

345+
##### Package: wcwidth
346+
347+
PackageName: wcwidth
348+
SPDXID: SPDXRef-Package-python-wcwidth
349+
PackageVersion: 0.2.14
350+
PackageSupplier: Organization: https://pypi.org
351+
PackageDownloadLocation: https://files.pythonhosted.org/packages/24/30/6b0809f4510673dc723187aeaf24c7f5459922d01e2f794277a3dfb90345/wcwidth-0.2.14.tar.gz
352+
FilesAnalyzed: false
353+
PackageLicenseConcluded: MIT
354+
PackageLicenseDeclared: MIT
355+
PackageCopyrightText: Copyright (c) 2014 Jeff Quast <contact@jeffquast.com>
356+
PackageChecksum: SHA256: 4d478375d31bc5395a3c55c40ccdf3354688364cd61c4f6adacaa9215d0b3605
357+
PackageChecksum: MD5: c179ab1aff6e3b48ac9617cf19f580d4
358+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/wcwidth@0.2.14
359+
360+
##### Package: xmltodict
361+
362+
PackageName: xmltodict
363+
SPDXID: SPDXRef-Package-python-xmltodict
364+
PackageVersion: 1.0.2
365+
PackageSupplier: Organization: https://pypi.org
366+
PackageDownloadLocation: https://files.pythonhosted.org/packages/6a/aa/917ceeed4dbb80d2f04dbd0c784b7ee7bba8ae5a54837ef0e5e062cd3cfb/xmltodict-1.0.2.tar.gz
367+
FilesAnalyzed: false
368+
PackageLicenseConcluded: MIT
369+
PackageLicenseDeclared: MIT
370+
PackageCopyrightText: Copyright (C) 2012 Martin Blech and individual contributors.
371+
PackageChecksum: SHA256: 54306780b7c2175a3967cad1db92f218207e5bc1aba697d887807c0fb68b7649
372+
PackageChecksum: MD5: 82d8cb5a934a057e6a8a3449b1d87cce
373+
ExternalRef: PACKAGE-MANAGER purl pkg:pypi/xmltodict@1.0.2
374+
120375
##### Relationships
121376

122377
Relationship: SPDXRef-DOCUMENT DESCRIBES SPDXRef-openchain-telco-sbom-validator
378+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-beartype
379+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-boolean-py
380+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-certifi
381+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-charset-normalizer
382+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-click
383+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-idna
384+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-license-expression
123385
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-ntia-conformance-checker
124386
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-packageurl-python
387+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-ply
125388
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-prettytable
389+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-pyparsing
390+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-pyyaml
391+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-rdflib
126392
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-requests
393+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-semantic-version
394+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-spdx-python-model
127395
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-spdx-tools
396+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-uritools
397+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-urllib3
128398
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-validators
399+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-wcwidth
400+
Relationship: SPDXRef-openchain-telco-sbom-validator CONTAINS SPDXRef-Package-python-xmltodict

0 commit comments

Comments
 (0)