Jamie Magee
Jamie Magee
Thanks for opening the issue. Our team is winding down for the holidays right now, so I don't expect we'll get back to this until January. We'll be starting up...
I've added this as a topic for our first community meeting. See #49. The TL;DR is: another team at Microsoft is building an SBOM generation tool, taking a dependency on...
We discussed this topic in our [community meeting on Wednesday 26th January](https://github.com/microsoft/component-detection/issues/49) and we've decided to go ahead with adding support for SPDX and CycloneDX support. I don't know _when_...
@dfederm Are we okay to still merge this, even if we're blocked with upstream dependencies? EDIT: Nope! Moving this to draft for now.
I opened a PR upstream https://github.com/dotnet/Docker.DotNet/pull/567
@wangzelin007 Can I ask the technical reason why you need separate files for this? I did a quick diff, and the differences are minor: - `requirements.py3.windows.txt` is missing `wrapt` -...
Hi @marklio, Can I get a bit more context on who you spoke to about this work? And why it's being made i.e. is this a bug fix or a...
The scenario I had in mind was your 2nd one: users will mount their scan directory in the container.
@sbs2001 I'd actually been looking at this last month but didn't open a PR for it. If I get it to PR would you be up for reviewing it? [Here's...
Is there any reason why we _wouldn't_ want so use `-mod=readonly` all the time?