Andre Oganesian
Andre Oganesian
Thanks for the comments. From my understanding, this isn't really an "incorrect" SBOM since it's valid from a build perspective, as Chainguard images (OS) are built from Wolfi packages, so...
Thanks both, understood. I unfortunately cannot share the origin image, but tried to represent it as best as possible with my example. So, confirming that this is seen as a...
Updated PR with your suggestions, now filter packages with mismatching PURL namespace instead. Thanks for helping with this! Let me know if any other comments