dependency-track
dependency-track copied to clipboard
Allow users to customise SBOM upon export
trafficstars
Current Behavior:
When exporting an SBOM from the UI, I identified you could only export it in the JSON format.
Proposed Behavior:
Would be good to have an option to export as an XML format as there are individuals in my organisation who prefer it, as well as an option to not include vulnerabilities from DT. I'll leave it to you to decide how you'd like to do this, but maybe something like giving users a pop-up box with a series of drop-down boxes, as follows:
a. The first box should allow you to select the SBOM format: SUGGESTED OPTIONS: json, or xml
b. The second box should allow you to choose whether to include vulnerabilities in the SBOM export.