cyclonedx-gomod
cyclonedx-gomod copied to clipboard
Capture compiler information
We're currently only capturing the Go version in app
and mod
.
Ideally we would also include info about the Go compiler, like hashes of go
and most likely more.
We'll need to do some research as to what properties make sense to include in the SBOM.
This was part of the feedback in https://zt.dev/posts/analysis-cyclonedx-gomod-sbom/