Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Catalog python uv.lock files #3268

Open
willmurphyscode opened this issue Sep 24, 2024 · 1 comment
Open

Catalog python uv.lock files #3268

willmurphyscode opened this issue Sep 24, 2024 · 1 comment
Labels
enhancement New feature or request new-cataloger

Comments

@willmurphyscode
Copy link
Contributor

What would you like to be added:

A Python cataloger that can understand uv.lock files, see https://docs.astral.sh/uv/concepts/projects/#project-lockfile for general docs.

Additional context:

According to this comment our best source for the structure of this file is to look at the uv code for the moment.

We should make sure the cataloger is extensible so that as new versions of the uv.lock format are released, Syft and switch on the version and parse the new versions.

@jgehrcke
Copy link

Thank you for tracking that! Nice.

Indeed, this already is important to various orgs. And importance will only rise from here.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request new-cataloger
Projects
Status: No status
Development

No branches or pull requests

2 participants