Comments (5)
read-installed
is used to retrieve information about the packages that are installed
from cyclonedx-node-module.
Could you please expand on this? Is this a CLI argument for cyclonedx-bom
? I'm basically trying generate BOM file having a project cloned on my filesystem.
from cyclonedx-node-module.
Information is read from the files installed into node_modules. So you need to run npm install
first.
Or do you not know what is meant by npm install
?
from cyclonedx-node-module.
Same issue here. I've run npm install ,and ./node_modules is full of packages. I'm also running cyclonedx-bom with -d to include dev packages, but I'm getting the same error w/ or w/o that arg.
I found that it was caused by not installing the cyclonedx-bom package globally (e.g. npm install -g @cyclonedx/bom). I was deliberately installing it locally so as not to pollute the system, and then using
npx @cyclonedx/bom cyclonedx-bom make-bom -d -o bom.xml
to execute the tool, but apparently it does not handle when run in that way.
I was able to make it work by directly accessing the bin via
./node_modules/@cyclonedx/bom/bin/cyclonedx-bom
rather than npx (which I'm possibly using incorrectly https://www.rockyourcode.com/run-locally-installed-npm-packages-without-global-install/)
It would be nice to avoid the requirement for global installation, or recommending in the help how to use it when locally installed, since modifying the system is not always possible or desirable.
from cyclonedx-node-module.
all questions answered.
input from @ddurham2 will be considered.
from cyclonedx-node-module.
Related Issues (20)
- FF in license file throws error HOT 3
- Invalid or unexpected token in 3.4.1 HOT 2
- URL within ExternalReferences array can contain just a period if project is created by create-react-app
- No dependencies(dependency graph) in the generated bom HOT 1
- bump integration tests: use non-vulnerable components HOT 1
- [YARN] support yarn2/yarn3 HOT 1
- use CDX-JS lib for data models, serialization and everythig. HOT 2
- Question: Does it suffice to run npm install instead of ng build in order to generate the BOM for an Angular project? HOT 2
- chore: have check for license-text file-header
- split code in library and application part HOT 2
- [Yarn] First-use experience has some issues HOT 6
- Exception if #purl is not available HOT 5
- Conflicts between cyclonedx-node-module and cyclonedx-python commands HOT 2
- Is the last element in property "dependencies" meaning "direct dependencies"?
- There are no components in the bom HOT 6
- [PSA] ALTERNATIVES :exclamation: :mega: HOT 1
- Missing feature in Version 4 / cyclonedx-npm to inlcuse License text HOT 3
- "cyclonedx-bom: command not found" when installing [email protected] HOT 3
- SBOM can contain invalid URLs in externalReferences HOT 7
- yarn 3.6.1 lockfile issue HOT 1
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from cyclonedx-node-module.