wagoodman

wagoodman

www.linkedin.com/in/alexgoodman87

Member Since 10 years ago

@anchore , Alexandria, VA

Experience Points
851
follower
Lessons Completed
11
follow
Lessons Completed
1.4k
stars
Best Reply Awards
77
repos

1603 contributions in the last year

Pinned
⚡ A tool for exploring each layer in a docker image
⚡ CLI tool and library for generating a Software Bill of Materials from container images and filesystems
⚡ A vulnerability scanner for container images and filesystems
⚡ go library for processing container images and simulating a squash filesystem
⚡ Use a yaml file to stitch together commands and bash snippits and run them with a bit of style. Why? Because your bash script should be quiet and shy-like (...and not such a loud mouth).
⚡ cloud inventory + ssh + tmux + sshfs
Activity
Dec
5
20 hours ago
push

wagoodman push wagoodman/goreleaser

wagoodman
wagoodman

feat: remove docker images from changelog (#2708)

refs #2707

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

docs: fix after mkdocs upgrade

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

feat: store artifact list into dist/artifacts.json (#2715)

  • feat: store artifact list into dist/artifacts.json

Signed-off-by: Carlos A Becker [email protected]

  • chore: fmt

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

chore(ci): fix descriptions for testing DEB/APK packages (#2720)

wagoodman
wagoodman

docs: update documentation for signing when using cosign (#2724)

Signed-off-by: Carlos Panato [email protected]

wagoodman
wagoodman

fix: double-dash cosign flags (#2725)

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

fix: jsonschema build ignore casing (#2728)

closes #2727

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

docs(quickstart): minimum github_token perms (#2722)

  • docs(quickstart): minimum github_token perms

after testing, this is what I found

not sure this is the exact way we should write this but it's a start

  • Update www/docs/quick-start.md

Co-authored-by: Carlos Alexandro Becker [email protected]

wagoodman
wagoodman

chore(ci): auto-assign milestone (#2729)

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

feat: rename yml to yaml in init command (#2719)

wagoodman
wagoodman

feat: add sbom generation pipe

Signed-off-by: Alex Goodman [email protected]

commit sha: 6eab0bc37ef27cf30d3344a2b884e8f798018263

push time in 4 hours ago
push

wagoodman push wagoodman/goreleaser

wagoodman
wagoodman

feat: remove docker images from changelog (#2708)

refs #2707

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

docs: fix after mkdocs upgrade

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

feat: store artifact list into dist/artifacts.json (#2715)

  • feat: store artifact list into dist/artifacts.json

Signed-off-by: Carlos A Becker [email protected]

  • chore: fmt

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

chore(ci): fix descriptions for testing DEB/APK packages (#2720)

wagoodman
wagoodman

docs: update documentation for signing when using cosign (#2724)

Signed-off-by: Carlos Panato [email protected]

wagoodman
wagoodman

fix: double-dash cosign flags (#2725)

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

fix: jsonschema build ignore casing (#2728)

closes #2727

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

docs(quickstart): minimum github_token perms (#2722)

  • docs(quickstart): minimum github_token perms

after testing, this is what I found

not sure this is the exact way we should write this but it's a start

  • Update www/docs/quick-start.md

Co-authored-by: Carlos Alexandro Becker [email protected]

wagoodman
wagoodman

chore(ci): auto-assign milestone (#2729)

Signed-off-by: Carlos A Becker [email protected]

wagoodman
wagoodman

feat: rename yml to yaml in init command (#2719)

commit sha: f9687b482ad00c9176244e9d76f600c765d6ec90

push time in 4 hours ago
push

wagoodman push wagoodman/goreleaser

wagoodman
wagoodman

feat: add sbom generation pipe

Signed-off-by: Alex Goodman [email protected]

commit sha: b31f76a9bb02aaf460630163ebfafd615bdbe21a

push time in 4 hours ago
push

wagoodman push wagoodman/goreleaser

wagoodman
wagoodman

feat: add sbom generation pipe

Signed-off-by: Alex Goodman [email protected]

commit sha: f8daf637cca026e7038011862e22152fc4902b5e

push time in 4 hours ago
Activity icon
created branch

wagoodman in wagoodman/goreleaser create branch install-syft

createdAt 4 hours ago
started
started time in 16 hours ago
Dec
4
1 day ago
started
started time in 1 day ago
started
started time in 1 day ago
started
started time in 1 day ago
Dec
3
2 days ago
Activity icon
created tag

wagoodman in anchore/grype create tag v0.26.1

createdAt 2 days ago
push

wagoodman push anchore/grype

wagoodman
wagoodman

fix release quality gate section (#518)

Signed-off-by: Alex Goodman [email protected]

commit sha: a7ce318b20360fefb02ede3e215d844184370212

push time in 2 days ago
Activity icon
delete

wagoodman in anchore/grype delete branch fix-qg

deleted time in 2 days ago
pull request

wagoodman pull request anchore/grype

wagoodman
wagoodman

Fix release quality gate section

Problem introduced from refactor: https://github.com/anchore/grype/pull/512

pull request

wagoodman pull request anchore/grype

wagoodman
wagoodman

Fix release quality gate section

Problem introduced from refactor: https://github.com/anchore/grype/pull/512

Activity icon
created branch

wagoodman in anchore/grype create branch fix-qg

createdAt 2 days ago
Activity icon
created tag

wagoodman in anchore/grype create tag v0.26.0

createdAt 2 days ago
Activity icon
delete

wagoodman in anchore/grype delete branch bump-syft-v0.31.0

deleted time in 2 days ago
push

wagoodman push anchore/grype

wagoodman
wagoodman

bump syft to v0.31.0 (#517)

Signed-off-by: Alex Goodman [email protected]

commit sha: 270606ad37f60169539201913388b6476b0baee9

push time in 2 days ago
pull request

wagoodman pull request anchore/grype

wagoodman
wagoodman

Bump syft to v0.31.0

This puts grype into a releasable state ❤️

push

wagoodman push anchore/grype

wagoodman
wagoodman

bump syft to v0.31.0

Signed-off-by: Alex Goodman [email protected]

commit sha: bc439e9cd7502941aadc14c300b3730316169edf

push time in 2 days ago
push

wagoodman push anchore/grype

wagoodman
wagoodman

Add db list command (#506)

  • add db list command

Signed-off-by: Alex Goodman [email protected]

  • add stderr print helper

Signed-off-by: Alex Goodman [email protected]

  • update docs to with details about listing files and DB curation

Signed-off-by: Alex Goodman [email protected]

commit sha: 86b7d165e2a87843e7dd3add710a4f58e016b6b3

push time in 2 days ago
Activity icon
delete

wagoodman in anchore/grype delete branch add-db-list

deleted time in 2 days ago
pull request

wagoodman pull request anchore/grype

wagoodman
wagoodman

Add db list command

Adds the ability to list entries discovered available DBs from the configured update URL (db.update-url)"

❯ syft db list
Built:    2021-11-22 08:13:50 +0000 UTC
URL:      https://toolbox-data.anchore.io/grype/databases/vulnerability-db_v3_2021-11-22T08:13:50Z.tar.gz
Checksum: sha256:b45e70819ab48d469cf4bbdb8a1fb41673f3465730885c49a1779bcdda5e6357

Built:    2021-11-21 08:15:44 +0000 UTC
URL:      https://toolbox-data.anchore.io/grype/databases/vulnerability-db_v3_2021-11-21T08:15:44Z.tar.gz
Checksum: sha256:c402d01fa909a3fa85a5c6733ef27a3a51a9105b6c62b9152adbd24c08358911

...

Built:    2021-06-02 10:24:36 +0000 UTC
URL:      https://toolbox-data.anchore.io/grype/databases/vulnerability-db_v3_2021-06-02T10:24:36Z.tar.gz
Checksum: sha256:50bdd79010dafbaa08d11cd62c3e9b4c6c86182012bd4f6dbad0df662bfe0c26

Built:    2021-06-01 20:56:41 +0000 UTC
URL:      https://toolbox-data.anchore.io/grype/databases/vulnerability-db_v3_2021-06-01T20:56:41Z.tar.gz
Checksum: sha256:9721e633543bb663814fad30a6f84f8f5de2fedcaaaea42547490ffb18e1f360

171 databases available for schema 3

Supports the following formats (via -o):

  • text: the format demoed above
  • raw: the entire listing file from the db.update-url
  • json: the subsection of the listing file pertaining to the current supported schema version
pull request

wagoodman pull request anchore/grype

wagoodman
wagoodman

Bump syft to v0.31.0

This puts grype into a releasable state ❤️

push

wagoodman push anchore/grype

wagoodman
wagoodman

bump syft to v0.31.0

Signed-off-by: Alex Goodman [email protected]

commit sha: 35d9e486cad8d9e4956d2b39cfa3827aa1b83637

push time in 2 days ago
Activity icon
created branch

wagoodman in anchore/grype create branch bump-syft-v0.31.0

createdAt 2 days ago
push

wagoodman push anchore/grype

wagoodman
wagoodman

ignore stderr output errors

Signed-off-by: Alex Goodman [email protected]

commit sha: 7c43cc0bc3987de2cf2883c295f443578f5900aa

push time in 2 days ago
Activity icon
created tag

wagoodman in anchore/syft create tag v0.31.0

createdAt 2 days ago
push

wagoodman push anchore/syft

wagoodman
wagoodman

bump containerd and image-spec (#654)

Signed-off-by: Alex Goodman [email protected]

commit sha: 22c4b275e73d70807fca8017d4896d8398b3373f

push time in 2 days ago
Previous