Skip to main content

 

REUSE status

spdx-validator

Simple validator of package SBoM

Installation

git https://github.com/hesa/spdx-validator.git
cd spdx-validator
pip install .

Supported SPDX versions

Supported formats

  • yaml

  • JSON

Using spdx_validator

Basic use

Assuming you have an SPDX file, project.json, you would like to validate:

$ spdx-validator project.json
$ echo $?
0

If you don't see any printout and the return code is 0, the file is valid.

Verbose printut

Assuming you have an SPDX file, project.spdx.yaml, you would like to validate:

$ spdx-validator example-data/project.spdx.yml --verbose
Determine file suffix:  OK, .yml
Read data from file: OK
Validating spdx data : OK
$ echo $?
0

Recursive use

As above you have an SPDX file, project.json, you would like to validate. But this time you want to check all the relationships recursively.

$ spdx-validator project.json -r
$ echo $?
0

If you don't see any printout and the return code is 0, the file is valid.

License

The program is licensed under GPL-3.0-only

The data (in the var directory) may be under other licenses.

Metadata

Release files for spdx-validator 0.1.7

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for spdx-validator 0.1.7
File Size Uploaded
spdx-validator-0.1.7.tar.gz 29.0 kB Details

Release files / spdx-validator-0.1.7.tar.gz

Download URL spdx-validator-0.1.7.tar.gz
Size 29.0 kB
Tags Source
SHA-256 checksum
How to use checksums
8a3c91b687a7d9f02c43139e216ba847f2f3cb9d8b6a9726fa98ec0194c88319
BLAKE2b-256 checksum
How to use checksums
f8ab0770d954242617db36ae1b24705f7f3a138321b42c2b82e4bfdc8cbfef72
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/4.0.1 CPython/3.9.2

Release history Release notifications | RSS feed

This release

0.1.7 This release

1 release file

0.1.6

1 release file

0.1.5

2 release files

0.1.4

1 release file

0.1.3

2 release files

0.1.2

1 release file

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page