Skip to content

Automate pip's SBOM package entry #113257

@sethmlarson

Description

@sethmlarson

Feature or enhancement

Proposal:

Part of #112302

Most of the vendored dependencies in CPython's source tree can't be automated due to being "outside" a package ecosystem therefore being difficult to automatically parse a version, pip however likely can be automated further since it's a Python package.

See #113249 (comment) and #113249 (comment)

Has this already been discussed elsewhere?

No response given

Links to previous discussion of this feature:

No response

Linked PRs

Metadata

Metadata

Assignees

No one assigned

    Labels

    type-featureA feature request or enhancement

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions