Explore tweets tagged as #PackageURL
Sneak Peak: The identification of using outdated components is coming in v3.1 (ETA June). Reduce risk of under-reported vulnerabilities and increase remediation response by keeping components updated. Supports RubyGems, npm, and Java repos. Another good use for #PackageURL
1
5
9
Native support for analyzing components with #OSSIndex is coming in a future release. Huge thanks to @sonatype for offering this service and to @sonatypeDev for creating it. #opensource #oss #sbom #PackageURL #appsec #owasp
1
8
12
Discover how Dependency-Track uses software bill-of-material specs such as @CycloneDX_Spec and #SPDX along with #PackageURL to identify known vulnerabilities and out-of-date components that are putting your apps at risk. Eradicate #OWASP #A9 #opensource
0
2
4
Installing older versions of R packages: install.packages(packageurl.tar.gz, repos=NULL, type="source") #R #datascience #programming.
0
0
0
Dependency-Track uses the #PackageURL specification in a number of different ways. provides some insight into just how powerful (and simple) the spec is.
0
1
2
First release of "URI::PackageURL", a Perl module for Package URL (aka "purl"). pkg:cpan/URI/PackageURL. #perl #cpan #modernperl.#smilecoding.
0
0
0
@smsunarto There is ghost everything in there. Use go get packageurl@commithash to try and unfuck.
1
0
1