CycloneDX 0.10.2
See the version list below for details.
dotnet tool install --global CycloneDX --version 0.10.2
dotnet new tool-manifest # if you are setting up this repo dotnet tool install --local CycloneDX --version 0.10.2
#tool dotnet:?package=CycloneDX&version=0.10.2
nuke :add-package CycloneDX --version 0.10.2
CycloneDX module for .NET
The CycloneDX module for .NET creates a valid CycloneDX bill-of-material document containing an aggregate of all project dependencies. CycloneDX is a lightweight BOM specification that is easily created, human readable, and simple to parse.
This module runs on .NET Core 2.1 and .NET Core 3.1.
Usage
CycloneDX for .NET is distributed via NuGet and Docker Hub.
Installing via NuGet
dotnet tool install --global CycloneDX
If you already have a previous version of CycloneDX installed, you can upgrade to the latest version using the following command:
dotnet tool update --global CycloneDX
Execution via DotNet
dotnet CycloneDX [OPTIONS]
Execution via Docker
docker run cyclonedx/cyclonedx-dotnet [OPTIONS]
Options
Usage: CycloneDX [path] -o [outputDirectory]
Arguments:
Path The path to a .sln, .csproj, .vbproj, or packages.config file or the path to a directory which will be recursively analyzed for packages.config files.
Options:
-o|--out <DIR> The directorty to write the BOM
-j|--json Produce a JSON BOM instead of XML
-u|--url <URL> Alternative NuGet repository URL to v3-flatcontainer API (a trailing slash is required).
-r|--recursive To be used with a single project file, it will recursively scan project references of the supplied .csproj.
-ns|--noSerialNumber Do not generate bom serial number
-gu|--githubUsername Optionally provide a GitHub username for license resolution (see notes below)
-gt|--githubToken Optionally provide a GitHub personal access token for license resolution
-dgl|--disableGithubLicenses Optionally disable GitHub license resolution
-?|-h|--help Show help information
Examples
To run the CycloneDX tool you need to specify a solution or project file. In case you pass a solution, the tool will aggregate all the projects.
The following will create a BOM from a solution and all projects defined within:
dotnet CycloneDX YourSolution.sln -o /output/path
The following will recursively scan the directory structure for packages.config and create a BOM:
dotnet CycloneDX /path/to/project -o /output/path
The following will recursively scan the project references of the supplied .csproj file, and create a BOM of all package references from all included projects:
dotnet CycloneDX /path/to/project/MyProject.csproj -o /output/path -r
GitHub License Resolution
SPDX license IDs can be resolved for packages that reference a supported license file in a GitHub repository.
The GitHub license API has an unauthenticated call limit of 60 calls per hour. To ensure consistent output if a rate limit is exceeded BoM generation will fail. If you start hitting rate limits you will need to generate a personal access token and provide this, and your username, when running CycloneDX.
To generate a token go to
Personal access tokens under
Settings / Developer setings
. From there select the option to
Generate new token. No special token
permissions are required.
Due to current limitations in the GitHub API licenses will only be resolved for master branch license references.
License
Permission to modify and redistribute is granted under the terms of the Apache 2.0 license. See the LICENSE file for the full license.
Product | Versions Compatible and additional computed target framework versions. |
---|---|
.NET | net5.0 was computed. net5.0-windows was computed. net6.0 was computed. net6.0-android was computed. net6.0-ios was computed. net6.0-maccatalyst was computed. net6.0-macos was computed. net6.0-tvos was computed. net6.0-windows was computed. net7.0 was computed. net7.0-android was computed. net7.0-ios was computed. net7.0-maccatalyst was computed. net7.0-macos was computed. net7.0-tvos was computed. net7.0-windows was computed. net8.0 was computed. net8.0-android was computed. net8.0-browser was computed. net8.0-ios was computed. net8.0-maccatalyst was computed. net8.0-macos was computed. net8.0-tvos was computed. net8.0-windows was computed. |
.NET Core | netcoreapp2.1 is compatible. netcoreapp2.2 was computed. netcoreapp3.0 was computed. netcoreapp3.1 is compatible. |
This package has no dependencies.
Version | Downloads | Last updated |
---|---|---|
4.1.0 | 27,338 | 11/17/2024 |
4.0.0 | 200,100 | 9/18/2024 |
3.0.8 | 334,048 | 6/7/2024 |
3.0.7 | 33,348 | 5/28/2024 |
3.0.6 | 181,327 | 3/28/2024 |
3.0.5 | 247,780 | 1/10/2024 |
3.0.4 | 21,293 | 1/2/2024 |
3.0.3 | 479 | 1/2/2024 |
3.0.2 | 8,134 | 12/29/2023 |
3.0.1 | 764 | 12/29/2023 |
3.0.0 | 815 | 12/28/2023 |
2.10.0 | 288,292 | 11/17/2023 |
2.9.0 | 91,078 | 10/1/2023 |
2.8.1 | 200,734 | 7/11/2023 |
2.8.0 | 26,355 | 6/21/2023 |
2.7.0 | 542,362 | 11/30/2022 |
2.6.0 | 10,263 | 11/23/2022 |
2.5.1 | 155,663 | 10/17/2022 |
2.5.0 | 5,697 | 10/17/2022 |
2.4.1 | 22,097 | 10/12/2022 |
2.3.0 | 794,697 | 11/11/2021 |
2.2.0 | 5,588 | 11/7/2021 |
2.1.2 | 17,717 | 10/10/2021 |
2.1.1 | 3,071 | 10/7/2021 |
2.1.0 | 1,208 | 10/6/2021 |
2.0.1 | 38,997 | 9/23/2021 |
2.0.0 | 4,291 | 9/20/2021 |
1.6.2 | 14,866 | 8/28/2021 |
1.6.1 | 43,863 | 6/27/2021 |
1.6.0 | 564 | 6/27/2021 |
1.5.1 | 461 | 6/27/2021 |
1.5.0 | 47,809 | 5/4/2021 |
1.4.0 | 23,704 | 3/12/2021 |
1.3.0 | 84,402 | 11/12/2020 |
1.2.0 | 108,094 | 10/20/2020 |
1.1.0 | 1,537 | 10/10/2020 |
1.0.3 | 1,517 | 10/1/2020 |
1.0.2 | 4,122 | 8/26/2020 |
1.0.1 | 2,665 | 8/4/2020 |
1.0.0 | 3,092 | 7/12/2020 |
0.11.1 | 622 | 7/11/2020 |
0.11.0 | 3,050 | 6/22/2020 |
0.10.6 | 585 | 6/22/2020 |
0.10.5 | 2,152 | 6/5/2020 |
0.10.4 | 958 | 6/3/2020 |
0.10.3 | 1,192 | 5/28/2020 |
0.10.2 | 842 | 5/26/2020 |
0.10.1 | 976 | 5/22/2020 |
0.10.0 | 11,164 | 4/29/2020 |
0.9.3 | 2,538 | 3/30/2020 |
0.9.2 | 4,276 | 2/10/2020 |
0.9.1 | 761 | 2/9/2020 |
0.9.0 | 10,380 | 11/14/2019 |
0.5.0 | 44,623 | 9/18/2019 |
0.4.0 | 1,163 | 7/27/2019 |
0.3.3 | 14,565 | 1/23/2019 |
0.3.2 | 789 | 1/23/2019 |
0.3.1 | 776 | 1/22/2019 |
0.3.0 | 766 | 1/22/2019 |
0.2.1 | 916 | 10/8/2018 |
0.2.0 | 915 | 10/5/2018 |
0.1.0 | 951 | 10/3/2018 |
See https://github.com/CycloneDX/cyclonedx-dotnet/blob/master/CHANGELOG.md#0102 for release notes.