Files
git.stella-ops.org/ops/offline-kit/TASKS.md
master c72621c71a
Some checks failed
Docs CI / lint-and-preview (push) Has been cancelled
feat: Enhance SBOM composition with policy findings and update CycloneDX package
- Added `PolicyFindings` property to `SbomCompositionRequest` to include policy findings in SBOM.
- Implemented `NormalizePolicyFindings` method to process and validate policy findings.
- Updated `SbomCompositionRequest.Create` method to accept policy findings as an argument.
- Upgraded CycloneDX.Core package from version 5.1.0 to 10.0.1.
- Marked several tasks as DONE in TASKS.md, reflecting completion of SBOM-related features.
- Introduced telemetry metrics for Go analyzer to track heuristic fallbacks.
- Added performance benchmarks for .NET and Go analyzers.
- Created new test fixtures for .NET applications, including dependencies and runtime configurations.
- Added licenses and nuspec files for logging and toolkit packages used in tests.
- Implemented `SbomPolicyFinding` record to encapsulate policy finding details and normalization logic.
2025-10-23 07:57:27 +03:00

1.2 KiB

Offline Kit Task Board

ID Status Owner(s) Depends on Description Exit Criteria
DEVOPS-OFFLINE-14-002 TODO Offline Kit Guild DEVOPS-REL-14-001 Build offline kit packaging workflow (artifact bundling, manifest generation, signature verification). Offline tarball generated with manifest + checksums + signatures; import script verifies integrity; docs updated.
DEVOPS-OFFLINE-18-003 TODO Offline Kit Guild, UX Specialist DEVOPS-OFFLINE-14-002 Capture Angular workspace npm cache + Chromium bundle in Offline Kit (out/offline-kit/web/) and document refresh cadence. Web cache directory added to kit manifest; documentation updated with npm run ci:install/verify:chromium workflow; periodic refresh SOP recorded in Offline Kit guide.
DEVOPS-OFFLINE-18-004 DONE (2025-10-22) Offline Kit Guild, Scanner Guild DEVOPS-OFFLINE-18-003, SCANNER-ANALYZERS-LANG-10-309G Rebuild Offline Kit bundle with Go analyzer plug-in and updated manifest/signature set. Kit tarball includes Go analyzer artifacts; manifest/signature refreshed; verification steps executed and logged; docs updated with new bundle version.