“GitHub Action for creating software bill of materials using Syft.”
Local reference
Suspicious dependency
Inferred
Loading file contents…
Loading traits…
Identity
| SHA-256 | a7a0982fe735f362f248b21367d99db963e1bf4518392aa7553f13ba0cfc8857 |
|---|---|
| Canonical SHA-256 | 22242ab32282891585c9d4efdbf22d1caa1793ab220054f66dae9aeb3bc3eea2 |
| Filename | v0.14.3 |
| Package | anchore/sbom-action |
| Version | v0.14.3 |
| PURL | pkg:github/anchore/[email protected] |
Origin
| Source | upload |
|---|---|
| Ecosystem | github |
| Domain | github.com |
| URL | https://codeload.github.com/anchore/sbom-action/tar.gz/v0.14.3 |
Timeline
| First seen | 11 Aug 2026 18:17 UTC |
|---|---|
| First analyzed | 11 Aug 2026 18:24 UTC |
| Last analyzed | 16 Aug 2026 19:05 UTC |
| Last updated | 16 Aug 2026 19:05 UTC |
Labeling
| Label | unknown |
|---|---|
| Label source | upload |
Not seeing what you expected? Let us know