Skip to main content

customized report generated from blackduck reports that gives 'color coded vulnerabilities', and 'source paths' including 'direct' and 'indirect dependencies' details all in one report

Project description

bdvr, an Customized Blackduck_Vulnerability_report

Use case:

Project stakeholders want to know which files are affected with vulnerabilities after a Blackduck HUB scan.

Drawbacks:

The current blackduck generates multiple reports. To fulfill above requirement once has to refer 2 different reports to really able to trace the source files affected.

Features

  1. Produces customized report where we can see vulnerability, OSS name, affected source path details all in one report
  2. Color coded low risk = no color medium risk = Yellow High risk = Red
  3. Omits all other files which has no vulnerabilities.

Prerequiites:

Go to Your Blackduck Project > Generate 'Create Version detail report' > checkbox Source and Vulnerabilities checked.

How to install

pip install bdvr

Command to run

usage:bdvr [-h] -p P [-o]

options:
  -h, --help  show this help message and exit
  -p P        Blackduck report folder is ex: D:\BD_REPORT\PROJECT_DATETIMESTAMP.zip
  -o          (Optional) To automatically open the file

bdvr -p Blackduck_generated_reports.zip

#To automatically open the file add -o option
bdvr -p Blackduck_generated_reports.zip -o

Dependenceis

Thanks to all authors. As this library uses below modules
pandas = "^1.4.3"
quo = "^2022.8.2"
universal-startfile = "^0.1.3"

Issues

Please send your bugs to dineshr93@gmail.com

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

bdvr-0.2.0.tar.gz (4.0 kB view details)

Uploaded Source

Built Distribution

bdvr-0.2.0-py3-none-any.whl (4.0 kB view details)

Uploaded Python 3

File details

Details for the file bdvr-0.2.0.tar.gz.

File metadata

  • Download URL: bdvr-0.2.0.tar.gz
  • Upload date:
  • Size: 4.0 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/1.1.14 CPython/3.10.0 Windows/10

File hashes

Hashes for bdvr-0.2.0.tar.gz
Algorithm Hash digest
SHA256 a02693d8d312d8a48626c6d6e0f694dcaaca9203f36a895f90fff284fec6a349
MD5 6bc4962013ab3104d1cf003452688f04
BLAKE2b-256 9c398acce9c9e2aaafde2989093e223e872879e7caac3d4550a05bcd966b7bfc

See more details on using hashes here.

File details

Details for the file bdvr-0.2.0-py3-none-any.whl.

File metadata

  • Download URL: bdvr-0.2.0-py3-none-any.whl
  • Upload date:
  • Size: 4.0 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/1.1.14 CPython/3.10.0 Windows/10

File hashes

Hashes for bdvr-0.2.0-py3-none-any.whl
Algorithm Hash digest
SHA256 aa178537d6a33eb590c076d55fe280a064533e77c365f9c3639958d6abb67e96
MD5 44e7bdbfe4ad3627cf5ccb071398a5c2
BLAKE2b-256 95dc105570d3a0b138832a5bdafa0a86ead93cd09ab77e4f2469560ff2101eae

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page