Skip to content

Conversation

@kbsteere
Copy link
Contributor

@kbsteere kbsteere commented Sep 10, 2025

  • Add analyze mode to pombump pipeline for intelligent dependency analysis before patching.
  • Supports BOM detection, JSON/YAML output, property search, and automated patch file generation.
  • Includes fail-on-bom-conflicts option for safer automated patching workflows.

pending pr: chainguard-dev/pombump#67

…OM detection

  - Add analyze mode to pombump pipeline for intelligent dependency analysis before patching.
  - Supports BOM detection, JSON/YAML output, property search, and automated patch file generation.
  - Includes fail-on-bom-conflicts option for safer automated patching workflows.

Signed-off-by: Kyle Steere <kyle.steere@chainguard.dev>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant