Skip to content

Feature/lab4#484

Open
Sarantsev wants to merge 14 commits intoinno-devops-labs:mainfrom
Sarantsev:feature/lab4
Open

Feature/lab4#484
Sarantsev wants to merge 14 commits intoinno-devops-labs:mainfrom
Sarantsev:feature/lab4

Conversation

@Sarantsev
Copy link

Goal

Generate Software Bills of Materials (SBOMs) for OWASP Juice Shop using Syft and Trivy, perform comprehensive Software Composition Analysis with Grype and Trivy, then compare the toolchain capabilities.

Changes

add: SBOM analysis, SCA findings, and toolchain comparison

Testing

  • Clone the repository and checkout the feature/lab4 branch
  • Navigate to labs/submission4.md

Artifacts & Screenshots

All artifacts are provided in the labs/lab4/

Checklist

  • PR has a clear, descriptive title
  • Documentation is updated
  • No secrets or sensitive data
  • Task 1 done — SBOM Generation with Syft and Trivy
  • Task 2 done — SCA with Grype and Trivy
  • Task 3 done — Comprehensive Toolchain Comparison

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant