Add tests to validate correct output of CycloneDX/SPDX SBOM formats
Open
enhancement
testing
- Dominant language
- Python
- Stars
- 43
- Forks
- 28
- PR merge metrics
- No merged PRs in 30d
Description
Add tests to verify that the CycloneDX and SPDX output we generate passes validation according to CycloneDX/SPDX best practices.
Contributor guide
Research direction
The issue names no files or tests; start by locating the CycloneDX and SPDX output generation code and the existing test suite. Add validation coverage for both formats against their stated best practices, and consider the work done when generated outputs pass the relevant validation checks.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- python
- Domain
- security, testing
- Issue type
- Feature
- Difficulty
- 4/5
- Estimated time
- 3-5 days
- Activity status
- Stale
- Clarity
- Needs clarification
- Newbie friendliness
- 35/100