“GitHub Action for creating software bill of materials using Syft.”
Local reference
Suspicious dependency
Inferred
Loading file contents…
Loading traits…
Identity
| SHA-256 | aa2ab0d58e14d209c434b989cc0eef63f9ae57518d516db2277d73b52327199f |
|---|---|
| Canonical SHA-256 | 00fbea8fe969065084e1ff61495fdd0445946505f2bda0e1a575eee2202e21d6 |
| Filename | e11c554f704a0b820cbf8c51673f6945e0731532 |
| Package | anchore/sbom-action |
| Version | e11c554f704a0b820cbf8c51673f6945e0731532 |
| PURL | pkg:github/anchore/sbom-action@e11c554f704a0b820cbf8c51673f6945e0731532 |
Origin
| Source | upload |
|---|---|
| Ecosystem | github |
| Domain | github.com |
| URL | https://codeload.github.com/anchore/sbom-action/tar.gz/e11c554f704a0b820cbf8c51673f6945e0731532 |
Timeline
| First seen | 11 Aug 2026 21:48 UTC |
|---|---|
| First analyzed | 11 Aug 2026 21:53 UTC |
| Last analyzed | 15 Aug 2026 22:20 UTC |
| Last updated | 15 Aug 2026 22:20 UTC |
Labeling
| Label | unknown |
|---|---|
| Label source | upload |
| Traits version | 298c2 |
Not seeing what you expected? Let us know