Skip to content

Use purl for carrying around package informations #482

Open
@pombredanne

Description

@pombredanne

In https://github.com/nexB/vulnerablecode/blob/24e33966bae6124e381556e520e18f1129c352fc/vulnerabilities/package_managers.py#L213 there is a new syntax where we use things such as "org.apache.org:tomcat" to pass Package URL-like data around. We should instead use either a purl string or a PackageURL object

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions