You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
@justinabrahms -- I think you're right to be unsure of whether to use package supplier in a NTIA minimum elements-related check. While it is technically part of the minimum elements, it seems, in my experience, that very few SBOMs actually include it, partially because the definition of a "supplier" for many open source software components is ambiguous.
https://www.ntia.gov/sites/default/files/publications/sbom_minimum_elements_report_0.pdf
minimum elements
The text was updated successfully, but these errors were encountered: