| { |
| "bomFormat": "CycloneDX", |
| "specVersion": "1.5", |
| "serialNumber": "urn:uuid:e6bbe415-c8d9-4f26-ad3a-80b7d22a78c7", |
| "version": 1, |
| "metadata": { |
| "timestamp": "2023-11-14T16:45:45.526Z", |
| "tools": { |
| "components": [ |
| { |
| "group": "@cyclonedx", |
| "name": "cdxgen", |
| "version": "9.9.3", |
| "purl": "pkg:npm/%40cyclonedx/cdxgen@9.9.3", |
| "type": "application", |
| "bom-ref": "pkg:npm/@cyclonedx/cdxgen@9.9.3", |
| "author": "OWASP Foundation", |
| "publisher": "OWASP Foundation" |
| } |
| ] |
| }, |
| "authors": [ |
| { |
| "name": "OWASP Foundation" |
| } |
| ], |
| "component": { |
| "group": "", |
| "name": "without-core", |
| "version": "latest", |
| "type": "application", |
| "bom-ref": "pkg:pypi/without-core@latest", |
| "purl": "pkg:pypi/without-core@latest", |
| "components": [] |
| } |
| }, |
| "components": [ |
| { |
| "group": "", |
| "name": "sshtunnel", |
| "version": "0.1.5", |
| "purl": "pkg:pypi/sshtunnel@0.1.5", |
| "type": "library", |
| "bom-ref": "pkg:pypi/sshtunnel@0.1.5", |
| "evidence": { |
| "identity": { |
| "field": "purl", |
| "confidence": 1, |
| "methods": [ |
| { |
| "technique": "instrumentation", |
| "confidence": 1, |
| "value": "/tmp/cdxgen-venv-BnB1dE" |
| } |
| ] |
| } |
| } |
| }, |
| { |
| "group": "", |
| "name": "paramiko", |
| "version": "3.3.1", |
| "purl": "pkg:pypi/paramiko@3.3.1", |
| "type": "library", |
| "bom-ref": "pkg:pypi/paramiko@3.3.1", |
| "evidence": { |
| "identity": { |
| "field": "purl", |
| "confidence": 0.8, |
| "methods": [ |
| { |
| "technique": "manifest-analysis", |
| "confidence": 0.8, |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| } |
| }, |
| "properties": [ |
| { |
| "name": "SrcFile", |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| }, |
| { |
| "group": "", |
| "name": "PyNaCl", |
| "version": "1.5.0", |
| "purl": "pkg:pypi/pynacl@1.5.0", |
| "type": "library", |
| "bom-ref": "pkg:pypi/pynacl@1.5.0", |
| "evidence": { |
| "identity": { |
| "field": "purl", |
| "confidence": 0.8, |
| "methods": [ |
| { |
| "technique": "manifest-analysis", |
| "confidence": 0.8, |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| } |
| }, |
| "properties": [ |
| { |
| "name": "SrcFile", |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| }, |
| { |
| "group": "", |
| "name": "cffi", |
| "version": "1.16.0", |
| "purl": "pkg:pypi/cffi@1.16.0", |
| "type": "library", |
| "bom-ref": "pkg:pypi/cffi@1.16.0", |
| "evidence": { |
| "identity": { |
| "field": "purl", |
| "confidence": 0.8, |
| "methods": [ |
| { |
| "technique": "manifest-analysis", |
| "confidence": 0.8, |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| } |
| }, |
| "properties": [ |
| { |
| "name": "SrcFile", |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| }, |
| { |
| "group": "", |
| "name": "pycparser", |
| "version": "2.21", |
| "purl": "pkg:pypi/pycparser@2.21", |
| "type": "library", |
| "bom-ref": "pkg:pypi/pycparser@2.21", |
| "evidence": { |
| "identity": { |
| "field": "purl", |
| "confidence": 0.8, |
| "methods": [ |
| { |
| "technique": "manifest-analysis", |
| "confidence": 0.8, |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| } |
| }, |
| "properties": [ |
| { |
| "name": "SrcFile", |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| }, |
| { |
| "group": "", |
| "name": "bcrypt", |
| "version": "4.0.1", |
| "purl": "pkg:pypi/bcrypt@4.0.1", |
| "type": "library", |
| "bom-ref": "pkg:pypi/bcrypt@4.0.1", |
| "evidence": { |
| "identity": { |
| "field": "purl", |
| "confidence": 0.8, |
| "methods": [ |
| { |
| "technique": "manifest-analysis", |
| "confidence": 0.8, |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| } |
| }, |
| "properties": [ |
| { |
| "name": "SrcFile", |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| }, |
| { |
| "group": "", |
| "name": "cryptography", |
| "version": "41.0.5", |
| "purl": "pkg:pypi/cryptography@41.0.5", |
| "type": "library", |
| "bom-ref": "pkg:pypi/cryptography@41.0.5", |
| "evidence": { |
| "identity": { |
| "field": "purl", |
| "confidence": 0.8, |
| "methods": [ |
| { |
| "technique": "manifest-analysis", |
| "confidence": 0.8, |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| } |
| }, |
| "properties": [ |
| { |
| "name": "SrcFile", |
| "value": "/app/provider_requirements/provider-ssh-2.2.0/python3.9/without-core/requirements.txt" |
| } |
| ] |
| }, |
| { |
| "group": "", |
| "name": "pysftp", |
| "version": "0.2.9", |
| "purl": "pkg:pypi/pysftp@0.2.9", |
| "type": "library", |
| "bom-ref": "pkg:pypi/pysftp@0.2.9", |
| "evidence": { |
| "identity": { |
| "field": "purl", |
| "confidence": 1, |
| "methods": [ |
| { |
| "technique": "instrumentation", |
| "confidence": 1, |
| "value": "/tmp/cdxgen-venv-BnB1dE" |
| } |
| ] |
| } |
| } |
| } |
| ], |
| "services": [], |
| "dependencies": [ |
| { |
| "ref": "pkg:pypi/without-core@latest", |
| "dependsOn": [] |
| }, |
| { |
| "ref": "pkg:pypi/paramiko@3.3.1", |
| "dependsOn": [ |
| "pkg:pypi/bcrypt@4.0.1", |
| "pkg:pypi/cryptography@41.0.5", |
| "pkg:pypi/pynacl@1.5.0" |
| ] |
| }, |
| { |
| "ref": "pkg:pypi/pynacl@1.5.0", |
| "dependsOn": [ |
| "pkg:pypi/cffi@1.16.0" |
| ] |
| }, |
| { |
| "ref": "pkg:pypi/cffi@1.16.0", |
| "dependsOn": [ |
| "pkg:pypi/pycparser@2.21" |
| ] |
| }, |
| { |
| "ref": "pkg:pypi/pycparser@2.21", |
| "dependsOn": [] |
| }, |
| { |
| "ref": "pkg:pypi/bcrypt@4.0.1", |
| "dependsOn": [] |
| }, |
| { |
| "ref": "pkg:pypi/cryptography@41.0.5", |
| "dependsOn": [ |
| "pkg:pypi/cffi@1.16.0" |
| ] |
| }, |
| { |
| "ref": "pkg:pypi/sshtunnel@0.1.5", |
| "dependsOn": [ |
| "pkg:pypi/paramiko@3.3.1" |
| ] |
| }, |
| { |
| "ref": "pkg:pypi/pysftp@0.2.9", |
| "dependsOn": [ |
| "pkg:pypi/paramiko@3.3.1" |
| ] |
| } |
| ] |
| } |