dependency-track icon indicating copy to clipboard operation
dependency-track copied to clipboard

Dependency-Track is an intelligent Component Analysis platform that allows organizations to identify and reduce risk in the software supply chain.

Results 588 dependency-track issues
Sort by recently updated
recently updated
newest added

Add information about the CI tools that triggered the dependency track job. [SonarQube](https://www.sonarqube.org/) does this. It adds a field called "detectedCI" to the project analysis if it was triggered by...

enhancement

The enhancement may already be reported! Please search for the enhancement before creating one. ### Current Behavior: When Dependency Track uses the GitHub external repository source to find additional vulnerabilities,...

enhancement

### Issue Type: - [ ] defect report - [X] enhancement request ### Current Behavior: I believe that it would be useful to track timestamps for "first seen" info for...

enhancement
p2

### Current Behavior: No [documented] endpoints for [health checks](https://kubernetes.io/docs/tasks/configure-pod-container/configure-liveness-readiness-startup-probes/) ### Proposed Behavior: add health-probes which can be used to monitor the app and it's state.

enhancement

### Current Behavior: The permissions do not follow the evolution of the project versions ### Steps to Reproduce: - Create a project with N teams in version 1.0.0 - menu...

duplicate

### Current Behavior: When cloning a project, the ACL for Portfolio Access Control cannot selected to be included in the clone. ### Proposed Behavior: Allow the ACL to be cloned...

enhancement
access control

### Current Behavior: input chinese infomation to project,it's shows ??? like below ![image](https://user-images.githubusercontent.com/22064977/168541714-0e18c2a8-4fd6-4d2d-ab41-3ffd2979d1b3.png) ![image](https://user-images.githubusercontent.com/22064977/168541737-e66cc89d-aacc-4c33-be56-c63b66ad6bb0.png) ### Proposed Behavior: support chinese =)

enhancement

The defect may already be reported! Please search for the defect before creating one. ### Current Behavior: I am currently using the v. 4.2.2 with the attached docker-compose.yml and I...

question
not an issue

### Current Behavior: Currently, the admin can create notifications in the backend for all projects for single mail addresses or other channels. With a bigger amount of projects this is...

enhancement
p3

Does Dependency Track able to find Vulnerability in C/C++ libraries if yes, then How we generate SBOM for C/C++ Libraries?

question