Skip to content

Commit 25c4e8b

Browse files
feat: Update README with more details on implementation
1 parent 3c038f6 commit 25c4e8b

File tree

1 file changed

+2
-0
lines changed

1 file changed

+2
-0
lines changed

README.md

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -86,6 +86,8 @@ The following design decisions have been made in processing the SBOM files:
8686

8787
2. It is assumed that the SBOM is valid and contains syntactically valid data. Invalid files will be silently ignored.
8888

89+
3. SBOMs which do not match the format of the SBOM to be processed when specified using the `--sbom` option is likely to result in incorrect differences being reported.
90+
8991
4. In SPDX format, the tool assumes that the name of a package is followed by the version and license of the package.
9092

9193
5. If there are multiple instances of a package included in the SBOM, only the first instance will be processed.

0 commit comments

Comments
 (0)