meta-dependencytrack
meta-dependencytrack copied to clipboard
Dependency-Tree
Does someone knows how I can create a SBOM of my Yocto Project, that shows the dependency tree in Dependency-Track of my packages?
I do not think that is a simple feat. You could try experimenting with extracting the necessary information from the dependency dot file generated with bitbake -g, see https://docs.yoctoproject.org/bitbake/2.8/bitbake-user-manual/bitbake-user-manual-intro.html#the-bitbake-command