CycloneDX / CycloneDX/cyclonedx-python

extend project URLs -> external references

Open
#800 3 comments 0 reactions 0 assignees Claimed by @arun2dot0 View on GitHub
enhancement good first issue hacktoberfest help wanted
Dominant language
Python
Stars
390
Forks
98
Avg merge
2d 14h
Merged PRs (30d)
1

Description

## Is your feature request related to a problem? Please describe.

This tool detects project URLs and emits them in the SBOM results as "external references".
The URL types are detected based on patterns - see https://github.com/CycloneDX/cyclonedx-python/blob/721f12d1a5799e9766fd4da79f54fd11c5776824/cyclonedx_py/_internal/utils/cdx.py#L85-L104

it appears that PyPI also documented the way they detect URL types:

It would be great if the PyPI heuristics could be applied, too.

## Describe the solution you'd like

Have the heuristics from PyPI apply to URL type detections, so that emitted external references follow the de facto standards, too.

These heuristics work on the URL name, as well on the URL itself.

## Additional context

PyPI's type classification according to

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.