Hacktoberfest 2026: the issues maintainers tagged for October, open and beginner-friendly. Browse Hacktoberfest issues

[2.0] formulation - docs make nosense

Open
#1,083 0 comments 0 reactions 1 assignee View on GitHub

@jkowalleck is already working on this.

Since Sep 8, 2026.

Assessment

This issue has not been assessed yet.

Description

cap: formulation CDX 2.0 defect

the CDX 2.0 formulation docsmake nosens

for example:
https://github.com/CycloneDX/specification/blob/a1c8aeb2e4e6a72851fd937f210e9b5add1cf514/schema/2.0/model/cyclonedx-formulation-2.0.schema.json#L653

A reference to the component or service [...]

service is done with CDX 2.0 - we only have components.

[...] (e.g., reference to a service with data flow value of inbound)

where does this inbound come from? is this expected to be an enum value? if so, it is not defined nowhere.

same for this
https://github.com/CycloneDX/specification/blob/a1c8aeb2e4e6a72851fd937f210e9b5add1cf514/schema/2.0/model/cyclonedx-formulation-2.0.schema.json#L662
.. where comes this "outbound" from?

Dominant language
XSLT
Stars
551
Forks
93
Avg merge
4h 51m
Merged PRs (30d)
42

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

More from CycloneDX/specification

All issues in CycloneDX/specification

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.