Skip to main content

customized report generated from set of blackduck reports that gives 'color coded vulnerabilities', and 'source paths' including 'direct' and 'indirect dependencies' details all in one report

Project description

bdvr, an Customized Blackduck_Vulnerability_report

Use case:

Project stakeholders want to know which files are affected with vulnerabilities after a Blackduck HUB scan.

Drawbacks:

The current blackduck generates multiple reports. To fulfill above requirement once has to refer 2 different reports to really able to trace the source files affected.

Features

  1. Produces customized report where we can see vulnerability, OSS name, affected source path details all in one report

  2. Color coded

    low risk = no color

    medium risk = Yellow

    High risk = Red

  3. Omits all other files which has no vulnerabilities.

Prerequiites:

Go to Your Blackduck Project > Generate 'Create Version detail report' > checkbox Source and Vulnerabilities checked.

How to install

pip install bdvr

Command to run

usage:bdvr [-h] -p P [-o]

options:
  -h, --help  show this help message and exit
  -p P        Blackduck report folder is ex: D:\BD_REPORT\PROJECT_DATETIMESTAMP.zip
  -o          (Optional) To automatically open the file

bdvr -p Blackduck_generated_reports.zip

#To automatically open the file add -o option
bdvr -p Blackduck_generated_reports.zip -o

Dependenceis

Thanks to all authors. As this library uses below modules
pandas = "^1.4.3"
quo = "^2022.8.2"
universal-startfile = "^0.1.3"

Issues

Please send your bugs to dineshr93@gmail.com

License

MIT

Project details


Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

bdvr-0.9.2.tar.gz (4.5 kB view details)

Uploaded Source

Built Distribution

bdvr-0.9.2-py3-none-any.whl (4.6 kB view details)

Uploaded Python 3

File details

Details for the file bdvr-0.9.2.tar.gz.

File metadata

  • Download URL: bdvr-0.9.2.tar.gz
  • Upload date:
  • Size: 4.5 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/1.1.14 CPython/3.10.7 Windows/10

File hashes

Hashes for bdvr-0.9.2.tar.gz
Algorithm Hash digest
SHA256 7f2a46a1d7bc321d2e965bfd7b0d80e8a4f4a6a2c759cd78594465d344893583
MD5 44758d368cfcb82e9f12b077037f23b1
BLAKE2b-256 89f33f6e23f7c922e9d1d20e1b97629d2f2d2dd024c7b92ca191bd0503f6603c

See more details on using hashes here.

File details

Details for the file bdvr-0.9.2-py3-none-any.whl.

File metadata

  • Download URL: bdvr-0.9.2-py3-none-any.whl
  • Upload date:
  • Size: 4.6 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: poetry/1.1.14 CPython/3.10.7 Windows/10

File hashes

Hashes for bdvr-0.9.2-py3-none-any.whl
Algorithm Hash digest
SHA256 983091bfccc33d158eac856af5174fce68d88514c6228bd40bf59b730a55b63e
MD5 d68ba43542b76f78cf614888f2f04db4
BLAKE2b-256 b71686bb1182fd4b45f7acc1f47fd5e4385b5492a5d911c8e3191e5b25ece005

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Pingdom Monitoring Sentry Error logging StatusPage Status page