DependencyTrack / DependencyTrack/dependency-track

Allow users to customise SBOM upon export

Open
#1,878 0 comments 1 reaction 0 assignees View on GitHub
enhancement
Dominant language
Java
Stars
4.2k
Forks
811
Avg merge
8h 39m
Merged PRs (30d)
237

Description

### Current Behavior:
When exporting an SBOM from the UI, I identified you could only export it in the JSON format.

### Proposed Behavior:
Would be good to have an option to export as an XML format as there are individuals in my organisation who prefer it, as well as an option to not include vulnerabilities from DT. I'll leave it to you to decide how you'd like to do this, but maybe something like giving users a pop-up box with a series of drop-down boxes, as follows:
a. The first box should allow you to select the SBOM format: SUGGESTED OPTIONS: `json`, or `xml`
b. The second box should allow you to choose whether to include vulnerabilities in the SBOM export.

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.