linux/Documentation/tools
Linus Torvalds e4b4bfaa50 SPDX patches for 7.2-rc1
Here is a "big" set of SPDX-like patches for 7.2-rc1.  It is the
 addition of the ability for the kernel build process to generate a
 Software Bill of Materials (SBOM) in the SPDX format, that matches up
 exactly with just the files that are actually built for the specific
 kernel image generated.
 
 To generate a sbom, after the kernel has been built, just do:
 	make sbom
 and marvel at the JSON file that is generated...
 
 This is needed by users for environments in which a SBOM is required
 (medical, automotive, anything shipped in the EU, etc.) and cuts down by
 a massive size the "naive" SBOM solution that many vendors have done by
 just including _all_ of the kernel files in the resulting document.
 
 This result is still a giant JSON file, that I am told parses properly,
 so we just have to trust that it is properly inclusive as attempting to
 parse that thing by hand is impossible.
 
 The scripts here are self-contained python scripts, no additional
 libraries or tools to create the SBOM are needed, which is important for
 many build systems.  Overall it's just a bit over 4000 lines of "simple"
 python code, the most complex part is the regex matching lines, but
 those are nothing compared to what we maintain in scripts/checkpatch.pl
 today...
 
 The various parts where the tool touches the kbuild subsystem have been
 acked by the kbuild maintainer, so all should be good here.
 
 All of these patches have been in linux-next for weeks with no reported
 problems.
 
 Signed-off-by: Greg Kroah-Hartman <gregkh@linuxfoundation.org>
 -----BEGIN PGP SIGNATURE-----
 
 iG0EABECAC0WIQT0tgzFv3jCIUoxPcsxR9QN2y37KQUCajk0Hg8cZ3JlZ0Brcm9h
 aC5jb20ACgkQMUfUDdst+ymLvgCffz6hsZs43VVpbqi7J1UKnxtlcAcAn0Qv2DgS
 wjRUwh7+ja4WLOaDnRsh
 =zSW4
 -----END PGP SIGNATURE-----

Merge tag 'spdx-7.2-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/gregkh/spdx

Pull SPDX updates from Greg KH:
 "Here is a "big" set of SPDX-like patches for 7.2-rc1. It is the
  addition of the ability for the kernel build process to generate a
  Software Bill of Materials (SBOM) in the SPDX format, that matches up
  exactly with just the files that are actually built for the specific
  kernel image generated.

  To generate a sbom, after the kernel has been built, just do:
	make sbom
  and marvel at the JSON file that is generated...

  This is needed by users for environments in which a SBOM is required
  (medical, automotive, anything shipped in the EU, etc.) and cuts down
  by a massive size the "naive" SBOM solution that many vendors have
  done by just including _all_ of the kernel files in the resulting
  document.

  This result is still a giant JSON file, that I am told parses
  properly, so we just have to trust that it is properly inclusive as
  attempting to parse that thing by hand is impossible.

  The scripts here are self-contained python scripts, no additional
  libraries or tools to create the SBOM are needed, which is important
  for many build systems. Overall it's just a bit over 4000 lines of
  "simple" python code, the most complex part is the regex matching
  lines, but those are nothing compared to what we maintain in
  scripts/checkpatch.pl today...

  The various parts where the tool touches the kbuild subsystem have
  been acked by the kbuild maintainer, so all should be good here.

  All of these patches have been in linux-next for weeks with no
  reported problems"

* tag 'spdx-7.2-rc1' of git://git.kernel.org/pub/scm/linux/kernel/git/gregkh/spdx:
  scripts/sbom: add unit tests for SPDX-License-Identifier parsing
  scripts/sbom: add unit tests for command parsers
  scripts/sbom: add SPDX build graph
  scripts/sbom: add SPDX source graph
  scripts/sbom: add SPDX output graph
  scripts/sbom: collect file metadata
  scripts/sbom: add shared SPDX elements
  scripts/sbom: add JSON-LD serialization
  scripts/sbom: add SPDX classes
  scripts/sbom: add additional dependency sources for cmd graph
  scripts/sbom: add cmd graph generation
  scripts/sbom: add command parsers
  scripts/sbom: setup sbom logging
  scripts/sbom: integrate script in make process
  scripts/sbom: add documentation
2026-06-22 12:06:22 -07:00
..
rtla Documentation/rtla: Add -A/--aligned option 2026-05-28 13:02:48 +02:00
rv rv: Add sample hybrid monitor stall 2026-03-31 16:47:17 +02:00
sbom scripts/sbom: add documentation 2026-05-22 13:14:40 +02:00
feat.rst docs: add parse_features module documentation 2026-01-23 11:37:39 -07:00
index.rst scripts/sbom: add documentation 2026-05-22 13:14:40 +02:00
jobserver.rst docs: add jobserver module documentation 2026-01-23 11:37:39 -07:00
kabi_helpers.rst docs: add kabi modules documentation 2026-01-23 11:37:38 -07:00
kabi_parser.rst docs: add kabi modules documentation 2026-01-23 11:37:38 -07:00
kabi_regex.rst docs: add kabi modules documentation 2026-01-23 11:37:38 -07:00
kabi_symbols.rst docs: add kabi modules documentation 2026-01-23 11:37:38 -07:00
kabi.rst docs: add kabi modules documentation 2026-01-23 11:37:38 -07:00
kdoc_ancillary.rst docs: tools: include kdoc_yaml_file at documentation 2026-03-25 13:36:45 -06:00
kdoc_output.rst docs: add kernel-doc modules documentation 2026-01-23 11:37:38 -07:00
kdoc_parser.rst docs: kdoc_parser: move transform lists to a separate file 2026-03-03 10:47:25 -07:00
kdoc.rst docs: add kernel-doc modules documentation 2026-01-23 11:37:38 -07:00
python.rst docs: python: add helpers to run unit tests 2026-03-22 15:02:29 -06:00
unittest.rst docs: python: add helpers to run unit tests 2026-03-22 15:02:29 -06:00