-
Epic
-
Resolution: Unresolved
-
Normal
-
None
-
None
-
None
-
SBOM arch distinctions
-
False
-
-
False
-
To Do
SBoMs coming from Konflux are expected to contain all packages for all architectures. We'll need to link to the Konflux or Product Security documentation explaining:
- Why the SBoM for a container image contains software not present in the image
- Reporting on that software is the expected behavior.