-
Notifications
You must be signed in to change notification settings - Fork 0
/
Copy pathrequests_3.12.7-bom.json
1 lines (1 loc) · 13.7 KB
/
requests_3.12.7-bom.json
1
{"bomFormat":"CycloneDX","specVersion":"1.6","serialNumber":"urn:uuid:21818770-4ce3-4f73-b585-db2877ef4b73","version":1,"metadata":{"timestamp":"2024-11-26T15:31:33Z","tools":{"components":[{"group":"@cyclonedx","name":"cdxgen","version":"11.0.3","purl":"pkg:npm/%40cyclonedx/cdxgen@11.0.3","type":"application","bom-ref":"pkg:npm/@cyclonedx/cdxgen@11.0.3","publisher":"OWASP Foundation","authors":[{"name":"OWASP Foundation"}]}]},"authors":[{"name":"OWASP Foundation"}],"lifecycles":[{"phase":"build"}],"component":{"group":"","name":"requests_3.12.7","version":"latest","type":"application","bom-ref":"pkg:pypi/requests-3.12.7@latest","purl":"pkg:pypi/requests-3.12.7@latest"},"properties":[{"name":"cdx:bom:componentTypes","value":"pypi"}]},"components":[{"group":"","name":"PySocks","version":"1.7.1","description":"A Python SOCKS client module. See https://github.com/Anorov/PySocks for more information.","scope":"required","hashes":[{"alg":"SHA-256","content":"08e69f092cc6dbe92a0fdd16eeb9b9ffbc13cadfe5ca4c7bd92ffb078b293299"}],"licenses":[{"license":{"id":"0BSD","url":"https://opensource.org/licenses/0BSD"}}],"purl":"pkg:pypi/pysocks@1.7.1","externalReferences":[{"type":"vcs","url":"https://github.com/Anorov/PySocks"}],"type":"library","bom-ref":"pkg:pypi/pysocks@1.7.1","evidence":{"identity":[{"field":"version","confidence":0.6,"methods":[{"technique":"manifest-analysis","confidence":0.6,"value":"Version specifiers: >=1.5.6, !=1.5.7"}]}]},"authors":[{"name":"Anorov <anorov.vorona@gmail.com>"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":">=1.5.6, !=1.5.7"}]},{"group":"","name":"certifi","version":"2024.8.30","description":"Python package for providing Mozilla's CA Bundle.","scope":"required","hashes":[{"alg":"SHA-256","content":"922820b53db7a7257ffbda3f597266d435245903d80737e34f8a45ff3e3230d8"}],"licenses":[{"license":{"id":"MPL-2.0","url":"https://opensource.org/licenses/MPL-2.0"}}],"purl":"pkg:pypi/certifi@2024.8.30","externalReferences":[{"type":"vcs","url":"https://github.com/certifi/python-certifi"}],"type":"library","bom-ref":"pkg:pypi/certifi@2024.8.30","evidence":{"identity":[{"field":"version","confidence":0.6,"methods":[{"technique":"manifest-analysis","confidence":0.6,"value":"Version specifiers: >=2017.4.17"}]}]},"authors":[{"name":"Kenneth Reitz <me@kennethreitz.com>"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":">=2017.4.17"},{"name":"ImportedModules","value":"certifi.where"}],"tags":["bundle"]},{"group":"","name":"chardet","version":"5.2.0","description":"Universal encoding detector for Python 3","scope":"required","hashes":[{"alg":"SHA-256","content":"e1cf59446890a00105fe7b7912492ea04b6e6f06d4b742b2c788469e34c82970"}],"licenses":[{"expression":"GNU Lesser General Public License v2 or later (LGPLv2+)"}],"purl":"pkg:pypi/chardet@5.2.0","externalReferences":[{"type":"vcs","url":"https://github.com/chardet/chardet"}],"type":"library","bom-ref":"pkg:pypi/chardet@5.2.0","evidence":{"identity":[{"field":"version","confidence":0.5,"methods":[{"technique":"source-code-analysis","confidence":0.5,"value":"PyPI package: chardet"}]}]},"authors":[{"name":"Mark Pilgrim <mark@diveintomark.org>"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":""},{"name":"ImportedModules","value":"chardet.__version__,chardet"}]},{"group":"","name":"charset-normalizer","version":"3.4.0","description":"The Real First Universal Charset Detector. Open, modern and actively maintained alternative to Chardet.","scope":"required","hashes":[{"alg":"SHA-256","content":"4f9fc98dad6c2eaa32fc3af1417d95b5e3d08aff968df0cd320066def971f9a6"}],"licenses":[{"license":{"id":"MIT","url":"https://opensource.org/licenses/MIT"}}],"purl":"pkg:pypi/charset-normalizer@3.4.0","externalReferences":[{"type":"vcs","url":"https://github.com/Ousret/charset_normalizer"}],"type":"library","bom-ref":"pkg:pypi/charset-normalizer@3.4.0","evidence":{"identity":[{"field":"version","confidence":0.6,"methods":[{"technique":"manifest-analysis","confidence":0.6,"value":"Version specifiers: >=2,<4"}]}]},"authors":[{"name":"Ahmed TAHRI <tahri.ahmed@proton.me>"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":">=2,<4"},{"name":"ImportedModules","value":",charset_normalizer,charset_normalizer.__version__"}]},{"group":"","name":"cryptography","version":"43.0.3","description":"cryptography is a package which provides cryptographic recipes and primitives to Python developers.","scope":"required","hashes":[{"alg":"SHA-256","content":"bf7a1932ac4176486eab36a19ed4c0492da5d97123f1406cf15e41b05e787d2e"}],"licenses":[{"expression":"Apache-2.0 OR BSD-3-Clause"}],"purl":"pkg:pypi/cryptography@43.0.3","type":"library","bom-ref":"pkg:pypi/cryptography@43.0.3","evidence":{"identity":[{"field":"version","confidence":0.5,"methods":[{"technique":"source-code-analysis","confidence":0.5,"value":"PyPI package: cryptography"}]}]},"authors":[{"name":"The cryptography developers <cryptography-dev@python.org> <The Python Cryptographic Authority and individual contributors <cryptography-dev@python.org>>"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":""},{"name":"ImportedModules","value":"cryptography,cryptography.__version__"}],"tags":["crypto"]},{"group":"","name":"idna","version":"3.10","description":"Internationalized Domain Names in Applications (IDNA)","scope":"required","hashes":[{"alg":"SHA-256","content":"946d195a0d259cbba61165e88e65941f16e9b36ea6ddb97f00452bae8b1287d3"}],"licenses":[{"license":{"id":"0BSD","url":"https://opensource.org/licenses/0BSD"}}],"purl":"pkg:pypi/idna@3.10","type":"library","bom-ref":"pkg:pypi/idna@3.10","evidence":{"identity":[{"field":"version","confidence":0.6,"methods":[{"technique":"manifest-analysis","confidence":0.6,"value":"Version specifiers: >=2.5,<4"}]}]},"authors":[{"name":"Kim Davies <kim+pypi@gumleaf.org>"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":">=2.5,<4"},{"name":"ImportedModules","value":",idna"}]},{"group":"","name":"pytest","version":"8.3.3","description":"pytest: simple powerful testing with Python","scope":"required","hashes":[{"alg":"SHA-256","content":"a6853c7375b2663155079443d2e45de913a911a11d669df02a50814944db57b2"}],"licenses":[{"license":{"id":"MIT","url":"https://opensource.org/licenses/MIT"}}],"purl":"pkg:pypi/pytest@8.3.3","type":"library","bom-ref":"pkg:pypi/pytest@8.3.3","evidence":{"identity":[{"field":"version","confidence":0.6,"methods":[{"technique":"manifest-analysis","confidence":0.6,"value":"Version specifiers: >=3"}]}]},"authors":[{"name":"Holger Krekel"},{"name":" Bruno Oliveira"},{"name":" Ronny Pfannschmidt"},{"name":" Floris Bruynooghe"},{"name":" Brianna Laugher"},{"name":" Florian Bruhin"},{"name":" Others (See AUTHORS)"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":">=3"}]},{"group":"","name":"pytest-cov","version":"6.0.0","description":"Pytest plugin for measuring coverage.","scope":"required","hashes":[{"alg":"SHA-256","content":"eee6f1b9e61008bd34975a4d5bab25801eb31898b032dd55addc93e96fcaaa35"}],"licenses":[{"license":{"id":"MIT","url":"https://opensource.org/licenses/MIT"}}],"purl":"pkg:pypi/pytest-cov@6.0.0","externalReferences":[{"type":"vcs","url":"https://github.com/pytest-dev/pytest-cov"}],"type":"library","bom-ref":"pkg:pypi/pytest-cov@6.0.0","evidence":{"identity":[{"field":"version","confidence":0.5,"methods":[{"technique":"source-code-analysis","confidence":0.5,"value":"PyPI package: pytest-cov"}]}]},"authors":[{"name":"Marc Schlaich <marc.schlaich@gmail.com>"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":""}]},{"group":"","name":"pytest-httpbin","version":"2.1.0","description":"Easily test your HTTP library against a local copy of httpbin","scope":"required","hashes":[{"alg":"SHA-256","content":"b3bf7346cc2ad231447189cd85b458e341056684a7a69d69533dd29692209cdd"}],"licenses":[{"license":{"id":"MIT","url":"https://opensource.org/licenses/MIT"}}],"purl":"pkg:pypi/pytest-httpbin@2.1.0","type":"library","bom-ref":"pkg:pypi/pytest-httpbin@2.1.0","authors":[{"name":"Kevin McCarthy <me@kevinmccarthy.org>"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":""}],"tags":["test"]},{"group":"","name":"pytest-mock","version":"3.14.0","description":"Thin-wrapper around the mock package for easier use with pytest","scope":"required","hashes":[{"alg":"SHA-256","content":"0b72c38033392a5f4621342fe11e9219ac11ec9d375f8e2a0c164539e0d70f6f"}],"licenses":[{"license":{"id":"MIT","url":"https://opensource.org/licenses/MIT"}}],"purl":"pkg:pypi/pytest-mock@3.14.0","type":"library","bom-ref":"pkg:pypi/pytest-mock@3.14.0","evidence":{"identity":[{"field":"version","confidence":0.5,"methods":[{"technique":"source-code-analysis","confidence":0.5,"value":"PyPI package: pytest-mock"}]}]},"authors":[{"name":"Bruno Oliveira <nicoddemus@gmail.com>"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":""}],"tags":["mock"]},{"group":"","name":"pytest-xdist","version":"3.6.1","description":"pytest xdist plugin for distributed testing, most importantly across multiple CPUs","scope":"required","hashes":[{"alg":"SHA-256","content":"9ed4adfb68a016610848639bb7e02c9352d5d9f03d04809919e2dafc3be4cca7"}],"licenses":[{"license":{"id":"MIT","url":"https://opensource.org/licenses/MIT"}}],"purl":"pkg:pypi/pytest-xdist@3.6.1","type":"library","bom-ref":"pkg:pypi/pytest-xdist@3.6.1","evidence":{"identity":[{"field":"version","confidence":0.5,"methods":[{"technique":"source-code-analysis","confidence":0.5,"value":"PyPI package: pytest-xdist"}]}]},"authors":[{"name":"holger krekel and contributors <pytest-dev@python.org>"},{"name":" holger@merlinux.eu"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":""}]},{"group":"","name":"simplejson","version":"3.19.3","description":"Simple, fast, extensible JSON encoder/decoder for Python","scope":"required","hashes":[{"alg":"SHA-256","content":"f39caec26007a2d0efab6b8b1d74873ede9351962707afab622cc2285dd26ed0"}],"licenses":[{"expression":"Academic Free License (AFL)"}],"purl":"pkg:pypi/simplejson@3.19.3","externalReferences":[{"type":"vcs","url":"https://github.com/simplejson/simplejson"}],"type":"library","bom-ref":"pkg:pypi/simplejson@3.19.3","evidence":{"identity":[{"field":"version","confidence":0.5,"methods":[{"technique":"source-code-analysis","confidence":0.5,"value":"PyPI package: simplejson"}]}]},"authors":[{"name":"Bob Ippolito <bob@redivi.com>"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":""},{"name":"ImportedModules","value":"simplejson.JSONDecodeError,simplejson"}],"tags":["json"]},{"group":"","name":"urllib3","version":"2.2.3","description":"HTTP library with thread-safe connection pooling, file post, and more.","scope":"required","hashes":[{"alg":"SHA-256","content":"ca899ca043dcb1bafa3e262d73aa25c465bfb49e0bd9dd5d59f1d0acba2f8fac"}],"licenses":[{"license":{"id":"MIT","url":"https://opensource.org/licenses/MIT"}}],"purl":"pkg:pypi/urllib3@2.2.3","type":"library","bom-ref":"pkg:pypi/urllib3@2.2.3","evidence":{"identity":[{"field":"version","confidence":0.6,"methods":[{"technique":"manifest-analysis","confidence":0.6,"value":"Version specifiers: >=1.21.1,<3"}]}]},"authors":[{"name":"Andrey Petrov <andrey.petrov@shazow.net>"}],"properties":[{"name":"cdx:pypi:versionSpecifiers","value":">=1.21.1,<3"},{"name":"ImportedModules","value":"urllib3.exceptions.DependencyWarning,urllib3.contrib.pyopenssl,urllib3.contrib.socks.SOCKSProxyManager,urllib3.exceptions.HTTPError,urllib3.exceptions.SSLError,urllib3.exceptions.ProxyError,urllib3.util.ssl_.create_urllib3_context,urllib3.exceptions.InvalidHeader,urllib3.filepost.encode_multipart_formdata,urllib3.exceptions.MaxRetryError,urllib3.exceptions.ConnectTimeoutError,urllib3.exceptions.ClosedPoolError,urllib3.__version__,urllib3.poolmanager.proxy_from_url,urllib3.util.Timeout,urllib3.exceptions.LocationParseError,urllib3.exceptions.ProtocolError,urllib3.util.retry.Retry,urllib3,urllib3.exceptions.DecodeError,urllib3.exceptions.LocationValueError,urllib3.util.make_headers,urllib3.exceptions.ResponseError,urllib3.exceptions.ReadTimeoutError,urllib3.fields.RequestField,urllib3.exceptions.NewConnectionError,urllib3.util.parse_url,urllib3.poolmanager.PoolManager"}],"tags":["http"]},{"group":"","name":"requests","version":"latest","scope":"optional","purl":"pkg:pypi/requests@latest","type":"library","bom-ref":"pkg:pypi/requests@latest","evidence":{"identity":[{"field":"purl","confidence":1,"methods":[{"technique":"instrumentation","confidence":1,"value":"/home/snapshot1/actions-runner/_work/cdxgen/cdxgen/src_repos/requests_3.12.7/.venv"}]}]},"properties":[{"name":"SrcFile","value":"/home/snapshot1/actions-runner/_work/cdxgen/cdxgen/src_repos/requests_3.12.7/pyproject.toml"}]}],"dependencies":[{"ref":"pkg:pypi/requests-3.12.7@latest","dependsOn":["pkg:pypi/pysocks@1.7.1","pkg:pypi/certifi@2024.8.30","pkg:pypi/chardet@5.2.0","pkg:pypi/charset-normalizer@3.4.0","pkg:pypi/cryptography@43.0.3","pkg:pypi/idna@3.10","pkg:pypi/pytest@8.3.3","pkg:pypi/pytest-cov@6.0.0","pkg:pypi/pytest-httpbin@2.1.0","pkg:pypi/pytest-mock@3.14.0","pkg:pypi/pytest-xdist@3.6.1","pkg:pypi/simplejson@3.19.3","pkg:pypi/urllib3@2.2.3","pkg:pypi/requests@latest"]},{"ref":"pkg:pypi/pysocks@1.7.1","dependsOn":[]},{"ref":"pkg:pypi/certifi@2024.8.30","dependsOn":[]},{"ref":"pkg:pypi/chardet@5.2.0","dependsOn":[]},{"ref":"pkg:pypi/charset-normalizer@3.4.0","dependsOn":[]},{"ref":"pkg:pypi/cryptography@43.0.3","dependsOn":[]},{"ref":"pkg:pypi/idna@3.10","dependsOn":[]},{"ref":"pkg:pypi/pytest@8.3.3","dependsOn":[]},{"ref":"pkg:pypi/pytest-cov@6.0.0","dependsOn":[]},{"ref":"pkg:pypi/pytest-httpbin@2.1.0","dependsOn":[]},{"ref":"pkg:pypi/pytest-mock@3.14.0","dependsOn":[]},{"ref":"pkg:pypi/pytest-xdist@3.6.1","dependsOn":[]},{"ref":"pkg:pypi/simplejson@3.19.3","dependsOn":[]},{"ref":"pkg:pypi/urllib3@2.2.3","dependsOn":[]},{"ref":"pkg:pypi/requests@latest","dependsOn":["pkg:pypi/certifi@2024.8.30","pkg:pypi/charset-normalizer@3.4.0","pkg:pypi/idna@3.10","pkg:pypi/urllib3@2.2.3"]}],"annotations":[]}