{ "$schema": "https://json-schema.org/draft/2020-12/schema", "$id": "https://raw.githubusercontent.com/api-evangelist/dependency-track/main/json-schema/dependency-track-notification-rule-schema.json", "title": "NotificationRule", "x-generated": "2026-10-09", "x-method": "derived", "x-generator": "derive-json-schema.py", "x-source": "openapi/dependency-track-openapi.yml#/components/schemas/NotificationRule", "type": "object", "properties": { "enabled": { "type": "boolean" }, "filterExpression": { "type": "string" }, "logSuccessfulPublish": { "type": "boolean" }, "message": { "type": "string", "maxLength": 1024, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "name": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "notificationLevel": { "type": "string", "enum": [ "INFORMATIONAL", "WARNING", "ERROR" ] }, "notifyChildren": { "type": "boolean" }, "notifyOn": { "type": "array", "items": { "type": "string", "enum": [ "CONFIGURATION", "DATASOURCE_MIRRORING", "REPOSITORY", "INTEGRATION", "FILE_SYSTEM", "ANALYZER", "NEW_VULNERABILITY", "NEW_VULNERABLE_DEPENDENCY", "VULNERABILITY_RETRACTED", "PROJECT_AUDIT_CHANGE", "BOM_CONSUMED", "BOM_PROCESSED", "BOM_PROCESSING_FAILED", "BOM_VALIDATION_FAILED", "VEX_CONSUMED", "VEX_PROCESSED", "POLICY_VIOLATION", "PROJECT_CREATED", "USER_CREATED", "USER_DELETED", "NEW_VULNERABILITIES_SUMMARY", "NEW_POLICY_VIOLATIONS_SUMMARY" ] }, "uniqueItems": true }, "projects": { "type": "array", "items": { "$ref": "#/$defs/Project" } }, "publisher": { "$ref": "#/$defs/NotificationPublisher" }, "publisherConfig": { "type": "string" }, "scheduleCron": { "type": "string", "description": "Schedule of this rule as cron expression. Must not be set for rules with trigger type EVENT." }, "scheduleLastTriggeredAt": { "type": "integer", "format": "int64", "description": "When the schedule last triggered, as UNIX epoch timestamp in milliseconds", "readOnly": true }, "scheduleNextTriggerAt": { "type": "integer", "format": "int64", "description": "When the schedule triggers next, as UNIX epoch timestamp in milliseconds", "readOnly": true }, "scheduleSkipUnchanged": { "type": "boolean", "description": "Whether to skip emitting a scheduled notification if it doesn't contain any changes since its last emission. Must not be set for rules with trigger type EVENT." }, "scope": { "type": "string", "enum": [ "SYSTEM", "PORTFOLIO" ] }, "tags": { "type": "array", "items": { "$ref": "#/$defs/Tag" }, "uniqueItems": true }, "teams": { "type": "array", "items": { "$ref": "#/$defs/Team" }, "uniqueItems": true }, "triggerType": { "type": "string", "enum": [ "EVENT", "SCHEDULE" ], "readOnly": true }, "uuid": { "type": "string", "format": "uuid" } }, "required": [ "name", "scope", "triggerType", "uuid" ], "$defs": { "AffectedComponent": { "type": "object", "properties": { "affectedVersionAttributions": { "type": "array", "items": { "$ref": "#/$defs/AffectedVersionAttribution" } }, "identity": { "type": "string" }, "identityType": { "type": "string", "enum": [ "CPE", "PURL" ] }, "uuid": { "type": "string", "format": "uuid" }, "version": { "type": "string" }, "versionEndExcluding": { "type": "string" }, "versionEndIncluding": { "type": "string" }, "versionStartExcluding": { "type": "string" }, "versionStartIncluding": { "type": "string" }, "versionType": { "type": "string", "enum": [ "EXACT", "RANGE" ] } } }, "AffectedVersionAttribution": { "type": "object", "properties": { "firstSeen": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "lastSeen": { "type": "integer", "format": "int64", "deprecated": true, "description": "Deprecated; always equal to firstSeen" }, "source": { "type": "string", "enum": [ "NVD", "GITHUB", "VULNDB", "OSSINDEX", "INTERNAL", "OSV", "SNYK", "CX", "JVN", "UNKNOWN" ] } }, "required": [ "firstSeen", "lastSeen" ] }, "ApiKey": { "type": "object", "properties": { "comment": { "type": "string", "maxLength": 255, "minLength": 0 }, "created": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "expiresAt": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "key": { "type": "string" }, "lastUsed": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "legacy": { "type": "boolean" }, "maskedKey": { "type": "string" }, "publicId": { "type": "string", "maxLength": 8, "minLength": 5 } } }, "Component": { "type": "object", "properties": { "author": { "type": "string" }, "authors": { "type": "array", "items": { "$ref": "#/$defs/OrganizationalContact" } }, "blake2b_256": { "type": "string", "pattern": "^[0-9a-f]{64}$" }, "blake2b_384": { "type": "string", "pattern": "^[0-9a-f]{96}$" }, "blake2b_512": { "type": "string", "pattern": "^[0-9a-f]{128}$" }, "blake3": { "type": "string", "pattern": "^[A-Fa-f0-9]*$" }, "children": { "type": "array", "items": { "$ref": "#/$defs/Component" } }, "classifier": { "type": "string", "enum": [ "APPLICATION", "FRAMEWORK", "LIBRARY", "CONTAINER", "OPERATING_SYSTEM", "DEVICE", "FIRMWARE", "FILE", "PLATFORM", "DEVICE_DRIVER", "MACHINE_LEARNING_MODEL", "DATA", "CRYPTOGRAPHIC_ASSET" ] }, "copyright": { "type": "string", "maxLength": 1024, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "cpe": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "(cpe:2\\.3:[aho\\*\\-](:(((\\?*|\\*?)([a-zA-Z0-9\\-\\._]|(\\\\[\\\\\\*\\?!\"#$$%&'\\(\\)\\+,/:;<=>@\\[\\]\\^`\\{\\|}~]))+(\\?*|\\*?))|[\\*\\-])){5}(:(([a-zA-Z]{2,3}(-([a-zA-Z]{2}|[0-9]{3}))?)|[\\*\\-]))(:(((\\?*|\\*?)([a-zA-Z0-9\\-\\._]|(\\\\[\\\\\\*\\?!\"#$$%&'\\(\\)\\+,/:;<=>@\\[\\]\\^`\\{\\|}~]))+(\\?*|\\*?))|[\\*\\-])){4})|([c][pP][eE]:/[AHOaho]?(:[A-Za-z0-9\\._\\-~%]*){0,6})" }, "dependencyGraph": { "type": "array", "items": { "type": "string", "format": "uuid" }, "uniqueItems": true }, "description": { "type": "string", "maxLength": 1024, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "directDependencies": { "type": "string" }, "expandDependencyGraph": { "type": "boolean" }, "extension": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{Alnum}!@#$%^&{}\\[\\]()_+\\-=,.~'` ]{1,255}$" }, "externalReferences": { "type": "array", "items": { "$ref": "#/$defs/ExternalReference" } }, "filename": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{Alnum}:/\\\\!@#$%^&{}\\[\\]()_+\\-=,.~'` ]{1,255}$" }, "group": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "isInternal": { "type": "boolean" }, "lastInheritedRiskScore": { "type": "number", "format": "double" }, "license": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "licenseExpression": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "licenseUrl": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^((((https?|ftps?|sftp|imap|rtsp|rtmp|sip|sips|git|ssh|telnet|nntp|file)://)|(mailto:|news:))(%[0-9A-Fa-f]{2}|[-()_.!~*';/?:@&=+$,A-Za-z0-9])+)([).!';/?:,][[:blank:]])?$" }, "md5": { "type": "string", "pattern": "^[0-9a-fA-F]{32}$" }, "metrics": { "$ref": "#/$defs/DependencyMetrics" }, "name": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "notes": { "type": "string" }, "occurrenceCount": { "type": "integer", "format": "int64" }, "parent": { "$ref": "#/$defs/Component" }, "project": { "$ref": "#/$defs/Project" }, "properties": { "type": "array", "items": { "$ref": "#/$defs/ComponentProperty" } }, "publisher": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "purl": { "type": "string", "maxLength": 1024, "minLength": 0 }, "purlCoordinates": { "type": "string", "maxLength": 1024, "minLength": 0, "readOnly": true }, "repositoryMeta": { "$ref": "#/$defs/RepositoryMetaComponent" }, "resolvedLicense": { "$ref": "#/$defs/License" }, "scope": { "type": "string", "enum": [ "REQUIRED", "OPTIONAL", "EXCLUDED" ], "maxLength": 255, "minLength": 0 }, "sha1": { "type": "string", "pattern": "^[0-9a-fA-F]{40}$" }, "sha256": { "type": "string", "pattern": "^[0-9a-fA-F]{64}$" }, "sha384": { "type": "string", "pattern": "^[0-9a-fA-F]{96}$" }, "sha3_256": { "type": "string", "pattern": "^[0-9a-fA-F]{64}$" }, "sha3_384": { "type": "string", "pattern": "^[0-9a-fA-F]{96}$" }, "sha3_512": { "type": "string", "pattern": "^[0-9a-fA-F]{128}$" }, "sha512": { "type": "string", "pattern": "^[0-9a-fA-F]{128}$" }, "streebog_256": { "type": "string", "pattern": "^[0-9a-fA-F]{64}$" }, "streebog_512": { "type": "string", "pattern": "^[0-9a-fA-F]{128}$" }, "supplier": { "$ref": "#/$defs/OrganizationalEntity" }, "swidTagId": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "uuid": { "type": "string", "format": "uuid" }, "version": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "vulnerabilities": { "type": "array", "items": { "$ref": "#/$defs/Vulnerability" } } }, "required": [ "classifier", "name", "project", "uuid" ] }, "ComponentProperty": { "type": "object", "properties": { "description": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "\\P{Cc}+" }, "groupName": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "\\P{Cc}+" }, "propertyName": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "\\P{Cc}+" }, "propertyType": { "type": "string", "enum": [ "BOOLEAN", "INTEGER", "NUMBER", "STRING", "TIMESTAMP", "URL", "UUID" ] }, "propertyValue": { "type": "string", "maxLength": 1024, "minLength": 0, "pattern": "\\P{Cc}+" }, "uuid": { "type": "string", "format": "uuid" } }, "required": [ "propertyName", "propertyType", "uuid" ] }, "Cwe": { "type": "object", "properties": { "cweId": { "type": "integer", "format": "int32" }, "name": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" } } }, "DataClassification": { "type": "object", "properties": { "direction": { "type": "string", "enum": [ "INBOUND", "OUTBOUND", "BI_DIRECTIONAL", "UNKNOWN" ] }, "name": { "type": "string" } } }, "DependencyMetrics": { "type": "object", "properties": { "critical": { "type": "integer", "format": "int32" }, "findingsAudited": { "type": "integer", "format": "int32" }, "findingsTotal": { "type": "integer", "format": "int32" }, "findingsUnaudited": { "type": "integer", "format": "int32" }, "firstOccurrence": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "high": { "type": "integer", "format": "int32" }, "inheritedRiskScore": { "type": "number", "format": "double" }, "kev": { "type": "integer", "format": "int32" }, "lastOccurrence": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "low": { "type": "integer", "format": "int32" }, "medium": { "type": "integer", "format": "int32" }, "policyViolationsAudited": { "type": "integer", "format": "int32" }, "policyViolationsFail": { "type": "integer", "format": "int32" }, "policyViolationsInfo": { "type": "integer", "format": "int32" }, "policyViolationsLicenseAudited": { "type": "integer", "format": "int32" }, "policyViolationsLicenseTotal": { "type": "integer", "format": "int32" }, "policyViolationsLicenseUnaudited": { "type": "integer", "format": "int32" }, "policyViolationsOperationalAudited": { "type": "integer", "format": "int32" }, "policyViolationsOperationalTotal": { "type": "integer", "format": "int32" }, "policyViolationsOperationalUnaudited": { "type": "integer", "format": "int32" }, "policyViolationsSecurityAudited": { "type": "integer", "format": "int32" }, "policyViolationsSecurityTotal": { "type": "integer", "format": "int32" }, "policyViolationsSecurityUnaudited": { "type": "integer", "format": "int32" }, "policyViolationsTotal": { "type": "integer", "format": "int32" }, "policyViolationsUnaudited": { "type": "integer", "format": "int32" }, "policyViolationsWarn": { "type": "integer", "format": "int32" }, "suppressed": { "type": "integer", "format": "int32" }, "unassigned": { "type": "integer", "format": "int32" }, "vulnerabilities": { "type": "integer", "format": "int32" } }, "required": [ "firstOccurrence", "lastOccurrence" ] }, "Epss": { "type": "object", "properties": { "cve": { "type": "string" }, "percentile": { "type": "number" }, "score": { "type": "number" } } }, "ExternalReference": { "type": "object", "properties": { "comment": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "type": { "type": "string", "enum": [ "vcs", "issue-tracker", "website", "advisories", "bom", "mailing-list", "social", "chat", "documentation", "support", "source-distribution", "distribution", "distribution-intake", "license", "build-meta", "build-system", "release-notes", "security-contact", "model-card", "attestation", "threat-model", "adversary-model", "risk-assessment", "vulnerability-assertion", "exploitability-statement", "pentest-report", "static-analysis-report", "dynamic-analysis-report", "runtime-analysis-report", "component-analysis-report", "maturity-report", "certification-report", "codified-infrastructure", "quality-metrics", "log", "configuration", "evidence", "formulation", "rfc-9116", "electronic-signature", "digital-signature", "patent", "patent-family", "patent-assertion", "citation", "poam", "other" ] }, "url": { "type": "string", "minLength": 1 } }, "required": [ "url" ] }, "LdapUser": { "type": "object", "properties": { "dn": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "[\\P{Cc}]+" }, "email": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "[\\P{Cc}]+" }, "permissions": { "type": "array", "items": { "$ref": "#/$defs/Permission" } }, "teams": { "type": "array", "items": { "$ref": "#/$defs/Team" } }, "username": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "[\\P{Cc}]+" } }, "required": [ "username" ] }, "License": { "type": "object", "properties": { "isCustomLicense": { "type": "boolean" }, "isDeprecatedLicenseId": { "type": "boolean" }, "isFsfLibre": { "type": "boolean" }, "isOsiApproved": { "type": "boolean" }, "licenseComments": { "type": "string" }, "licenseGroups": { "type": "array", "items": { "$ref": "#/$defs/LicenseGroup" } }, "licenseId": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[a-zA-Z0-9_.\\-+]*$" }, "licenseText": { "type": "string" }, "name": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "seeAlso": { "type": "array", "items": { "type": "string" } }, "standardLicenseHeader": { "type": "string" }, "standardLicenseTemplate": { "type": "string" }, "uuid": { "type": "string", "format": "uuid" } }, "required": [ "licenseId", "name", "uuid" ] }, "LicenseGroup": { "type": "object", "properties": { "licenses": { "type": "array", "items": { "$ref": "#/$defs/License" } }, "name": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "riskWeight": { "type": "integer", "format": "int32" }, "uuid": { "type": "string", "format": "uuid" } }, "required": [ "name", "uuid" ] }, "ManagedUser": { "type": "object", "properties": { "confirmPassword": { "type": "string" }, "email": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "[\\P{Cc}]+" }, "forcePasswordChange": { "type": "boolean" }, "fullname": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "[\\P{Cc}]+" }, "lastPasswordChange": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "newPassword": { "type": "string" }, "nonExpiryPassword": { "type": "boolean" }, "permissions": { "type": "array", "items": { "$ref": "#/$defs/Permission" } }, "suspended": { "type": "boolean" }, "teams": { "type": "array", "items": { "$ref": "#/$defs/Team" } }, "username": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "[\\P{Cc}]+" } }, "required": [ "lastPasswordChange", "username" ] }, "MappedLdapGroup": { "type": "object", "properties": { "dn": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "[\\P{Cc}]+" }, "uuid": { "type": "string", "format": "uuid" } }, "required": [ "dn", "uuid" ] }, "MappedOidcGroup": { "type": "object", "properties": { "group": { "$ref": "#/$defs/OidcGroup" }, "uuid": { "type": "string", "format": "uuid" } }, "required": [ "uuid" ] }, "NotificationPublisher": { "type": "object", "properties": { "defaultPublisher": { "type": "boolean" }, "description": { "type": "string", "maxLength": 1024, "minLength": 0 }, "extensionName": { "type": "string", "maxLength": 1024, "minLength": 1 }, "name": { "type": "string", "maxLength": 255, "minLength": 1 }, "template": { "type": "string" }, "templateMimeType": { "type": "string", "maxLength": 255, "minLength": 1 }, "uuid": { "type": "string", "format": "uuid" } }, "required": [ "extensionName", "name", "templateMimeType", "uuid" ] }, "OidcGroup": { "type": "object", "properties": { "name": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "[\\P{Cc}]+" }, "uuid": { "type": "string", "format": "uuid" } }, "required": [ "name", "uuid" ] }, "OidcUser": { "type": "object", "properties": { "email": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "[\\P{Cc}]+" }, "permissions": { "type": "array", "items": { "$ref": "#/$defs/Permission" } }, "subjectIdentifier": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "[\\P{Cc}]+" }, "teams": { "type": "array", "items": { "$ref": "#/$defs/Team" } }, "username": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "[\\P{Cc}]+" } }, "required": [ "username" ] }, "OrganizationalContact": { "type": "object", "properties": { "email": { "type": "string" }, "name": { "type": "string" }, "phone": { "type": "string" } } }, "OrganizationalEntity": { "type": "object", "properties": { "contacts": { "type": "array", "items": { "$ref": "#/$defs/OrganizationalContact" } }, "name": { "type": "string" }, "urls": { "type": "array", "items": { "type": "string" } } } }, "Permission": { "type": "object", "properties": { "description": { "type": "string" }, "ldapUsers": { "type": "array", "items": { "$ref": "#/$defs/LdapUser" } }, "managedUsers": { "type": "array", "items": { "$ref": "#/$defs/ManagedUser" } }, "name": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[a-zA-Z_0-9]*$" }, "oidcUsers": { "type": "array", "items": { "$ref": "#/$defs/OidcUser" } } }, "required": [ "name" ] }, "Project": { "type": "object", "properties": { "accessTeams": { "type": "array", "items": { "$ref": "#/$defs/Team" }, "uniqueItems": true, "writeOnly": true }, "active": { "type": "boolean" }, "author": { "type": "string" }, "authors": { "type": "array", "items": { "$ref": "#/$defs/OrganizationalContact" } }, "bomRef": { "type": "string" }, "children": { "type": "array", "items": { "$ref": "#/$defs/Project" } }, "classifier": { "type": "string", "enum": [ "APPLICATION", "FRAMEWORK", "LIBRARY", "CONTAINER", "OPERATING_SYSTEM", "DEVICE", "FIRMWARE", "FILE", "PLATFORM", "DEVICE_DRIVER", "MACHINE_LEARNING_MODEL", "DATA", "CRYPTOGRAPHIC_ASSET" ] }, "collectionLogic": { "type": "string", "enum": [ "AGGREGATE_DIRECT_CHILDREN", "AGGREGATE_DIRECT_CHILDREN_WITH_TAG", "AGGREGATE_LATEST_VERSION_CHILDREN" ] }, "collectionTag": { "$ref": "#/$defs/Tag" }, "cpe": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "(cpe:2\\.3:[aho\\*\\-](:(((\\?*|\\*?)([a-zA-Z0-9\\-\\._]|(\\\\[\\\\\\*\\?!\"#$$%&'\\(\\)\\+,/:;<=>@\\[\\]\\^`\\{\\|}~]))+(\\?*|\\*?))|[\\*\\-])){5}(:(([a-zA-Z]{2,3}(-([a-zA-Z]{2}|[0-9]{3}))?)|[\\*\\-]))(:(((\\?*|\\*?)([a-zA-Z0-9\\-\\._]|(\\\\[\\\\\\*\\?!\"#$$%&'\\(\\)\\+,/:;<=>@\\[\\]\\^`\\{\\|}~]))+(\\?*|\\*?))|[\\*\\-])){4})|([c][pP][eE]:/[AHOaho]?(:[A-Za-z0-9\\._\\-~%]*){0,6})" }, "description": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "directDependencies": { "type": "string" }, "externalReferences": { "type": "array", "items": { "$ref": "#/$defs/ExternalReference" } }, "group": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "inactiveSince": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds", "readOnly": true }, "isLatest": { "type": "boolean" }, "lastBomImport": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "lastBomImportFormat": { "type": "string" }, "lastInheritedRiskScore": { "type": "number", "format": "double" }, "lastVulnerabilityAnalysis": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "manufacturer": { "$ref": "#/$defs/OrganizationalEntity" }, "metadata": { "$ref": "#/$defs/ProjectMetadata" }, "metrics": { "$ref": "#/$defs/ProjectMetrics" }, "name": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "parent": { "$ref": "#/$defs/Project" }, "publisher": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "purl": { "type": "string", "maxLength": 1024, "minLength": 0 }, "supplier": { "$ref": "#/$defs/OrganizationalEntity" }, "swidTagId": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "tags": { "type": "array", "items": { "$ref": "#/$defs/Tag" }, "uniqueItems": true }, "uuid": { "type": "string", "format": "uuid" }, "version": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "versions": { "type": "array", "items": { "$ref": "#/$defs/ProjectVersion" } } }, "required": [ "lastBomImport", "name", "uuid" ] }, "ProjectMetadata": { "type": "object", "properties": { "authors": { "type": "array", "items": { "$ref": "#/$defs/OrganizationalContact" } }, "supplier": { "$ref": "#/$defs/OrganizationalEntity" }, "tools": { "$ref": "#/$defs/Tools" } }, "readOnly": true }, "ProjectMetrics": { "type": "object", "properties": { "components": { "type": "integer", "format": "int32" }, "critical": { "type": "integer", "format": "int32" }, "findingsAudited": { "type": "integer", "format": "int32" }, "findingsTotal": { "type": "integer", "format": "int32" }, "findingsUnaudited": { "type": "integer", "format": "int32" }, "firstOccurrence": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "high": { "type": "integer", "format": "int32" }, "inheritedRiskScore": { "type": "number", "format": "double" }, "kev": { "type": "integer", "format": "int32" }, "lastOccurrence": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "low": { "type": "integer", "format": "int32" }, "medium": { "type": "integer", "format": "int32" }, "policyViolationsAudited": { "type": "integer", "format": "int32" }, "policyViolationsFail": { "type": "integer", "format": "int32" }, "policyViolationsInfo": { "type": "integer", "format": "int32" }, "policyViolationsLicenseAudited": { "type": "integer", "format": "int32" }, "policyViolationsLicenseTotal": { "type": "integer", "format": "int32" }, "policyViolationsLicenseUnaudited": { "type": "integer", "format": "int32" }, "policyViolationsOperationalAudited": { "type": "integer", "format": "int32" }, "policyViolationsOperationalTotal": { "type": "integer", "format": "int32" }, "policyViolationsOperationalUnaudited": { "type": "integer", "format": "int32" }, "policyViolationsSecurityAudited": { "type": "integer", "format": "int32" }, "policyViolationsSecurityTotal": { "type": "integer", "format": "int32" }, "policyViolationsSecurityUnaudited": { "type": "integer", "format": "int32" }, "policyViolationsTotal": { "type": "integer", "format": "int32" }, "policyViolationsUnaudited": { "type": "integer", "format": "int32" }, "policyViolationsWarn": { "type": "integer", "format": "int32" }, "suppressed": { "type": "integer", "format": "int32" }, "unassigned": { "type": "integer", "format": "int32" }, "vulnerabilities": { "type": "integer", "format": "int32" }, "vulnerableComponents": { "type": "integer", "format": "int32" } }, "required": [ "firstOccurrence", "lastOccurrence" ] }, "ProjectVersion": { "type": "object", "properties": { "active": { "type": "boolean" }, "isLatest": { "type": "boolean" }, "uuid": { "type": "string", "format": "uuid" }, "version": { "type": "string" } } }, "RepositoryMetaComponent": { "type": "object", "properties": { "lastCheck": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "latestVersion": { "type": "string" }, "latestVersionPublishedAt": { "type": "integer", "format": "int64", "description": "UNIX epoch timestamp in milliseconds" }, "name": { "type": "string" }, "namespace": { "type": "string" }, "repositoryType": { "type": "string", "enum": [ "MAVEN", "NPM", "GEM", "PYPI", "NUGET", "HEX", "COMPOSER", "CARGO", "GO_MODULES", "CPAN", "GITHUB", "HACKAGE", "NIXPKGS", "UNSUPPORTED" ] } } }, "ServiceAccount": { "type": "object", "properties": { "email": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "[\\P{Cc}]+" }, "permissions": { "type": "array", "items": { "$ref": "#/$defs/Permission" } }, "suspended": { "type": "boolean" }, "teams": { "type": "array", "items": { "$ref": "#/$defs/Team" } }, "username": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "[\\P{Cc}]+" } }, "required": [ "username" ] }, "ServiceComponent": { "type": "object", "properties": { "authenticated": { "type": "boolean" }, "bomRef": { "type": "string" }, "children": { "type": "array", "items": { "$ref": "#/$defs/ServiceComponent" } }, "crossesTrustBoundary": { "type": "boolean" }, "data": { "type": "array", "items": { "$ref": "#/$defs/DataClassification" } }, "description": { "type": "string", "maxLength": 1024, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "endpoints": { "type": "array", "items": { "type": "string" } }, "externalReferences": { "type": "array", "items": { "$ref": "#/$defs/ExternalReference" } }, "group": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "lastInheritedRiskScore": { "type": "number", "format": "double" }, "name": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "notes": { "type": "string" }, "parent": { "$ref": "#/$defs/ServiceComponent" }, "project": { "$ref": "#/$defs/Project" }, "provider": { "$ref": "#/$defs/OrganizationalEntity" }, "uuid": { "type": "string", "format": "uuid" }, "version": { "type": "string", "maxLength": 255, "minLength": 0, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "vulnerabilities": { "type": "array", "items": { "$ref": "#/$defs/Vulnerability" } } }, "required": [ "name", "project", "uuid" ] }, "Tag": { "type": "object", "properties": { "name": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" } }, "required": [ "name" ] }, "Team": { "type": "object", "properties": { "apiKeys": { "type": "array", "items": { "$ref": "#/$defs/ApiKey" } }, "ldapUsers": { "type": "array", "items": { "$ref": "#/$defs/LdapUser" } }, "managedUsers": { "type": "array", "items": { "$ref": "#/$defs/ManagedUser" } }, "mappedLdapGroups": { "type": "array", "items": { "$ref": "#/$defs/MappedLdapGroup" } }, "mappedOidcGroups": { "type": "array", "items": { "$ref": "#/$defs/MappedOidcGroup" } }, "name": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "[\\P{Cc}]+" }, "oidcUsers": { "type": "array", "items": { "$ref": "#/$defs/OidcUser" } }, "permissions": { "type": "array", "items": { "$ref": "#/$defs/Permission" } }, "serviceAccounts": { "type": "array", "items": { "$ref": "#/$defs/ServiceAccount" } }, "uuid": { "type": "string", "format": "uuid" } }, "required": [ "name", "uuid" ] }, "Tools": { "type": "object", "properties": { "components": { "type": "array", "items": { "$ref": "#/$defs/Component" } }, "services": { "type": "array", "items": { "$ref": "#/$defs/ServiceComponent" } } } }, "Vulnerability": { "type": "object", "properties": { "affectedActiveProjectCount": { "type": "integer", "format": "int32" }, "affectedComponents": { "type": "array", "items": { "$ref": "#/$defs/AffectedComponent" } }, "affectedInactiveProjectCount": { "type": "integer", "format": "int32" }, "affectedProjectCount": { "type": "integer", "format": "int32" }, "aliases": { "type": "array", "items": { "$ref": "#/$defs/VulnerabilityAlias" } }, "components": { "type": "array", "items": { "$ref": "#/$defs/Component" } }, "created": { "type": "string", "format": "date-time" }, "credits": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "cvssV2BaseScore": { "type": "number" }, "cvssV2ExploitabilitySubScore": { "type": "number" }, "cvssV2ImpactSubScore": { "type": "number" }, "cvssV2Vector": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "cvssV3BaseScore": { "type": "number" }, "cvssV3ExploitabilitySubScore": { "type": "number" }, "cvssV3ImpactSubScore": { "type": "number" }, "cvssV3Vector": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "cvssV4Score": { "type": "number" }, "cvssV4Vector": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "cwes": { "type": "array", "items": { "$ref": "#/$defs/Cwe" } }, "description": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "detail": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "epss": { "$ref": "#/$defs/Epss" }, "epssPercentile": { "type": "number" }, "epssScore": { "type": "number" }, "friendlyVulnId": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "isKev": { "type": "boolean" }, "owaspRRBusinessImpactScore": { "type": "number" }, "owaspRRLikelihoodScore": { "type": "number" }, "owaspRRTechnicalImpactScore": { "type": "number" }, "owaspRRVector": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "patchedVersions": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "published": { "type": "string", "format": "date-time" }, "recommendation": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "references": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "rejected": { "type": "string", "format": "date-time" }, "serviceComponents": { "type": "array", "items": { "$ref": "#/$defs/ServiceComponent" } }, "severity": { "type": "string", "enum": [ "CRITICAL", "HIGH", "MEDIUM", "LOW", "INFO", "UNASSIGNED" ], "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "source": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "subTitle": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "tags": { "type": "array", "items": { "$ref": "#/$defs/Tag" }, "uniqueItems": true }, "title": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "updated": { "type": "string", "format": "date-time" }, "uuid": { "type": "string", "format": "uuid" }, "vulnId": { "type": "string", "maxLength": 255, "minLength": 1, "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}]*$" }, "vulnerableVersions": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" } }, "required": [ "friendlyVulnId", "source", "uuid", "vulnId" ] }, "VulnerabilityAlias": { "type": "object", "properties": { "cveId": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "cxId": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "ghsaId": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "gsdId": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "internalId": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "osvId": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "snykId": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "sonatypeId": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" }, "vulnDbId": { "type": "string", "pattern": "^[\\p{IsWhite_Space}\\p{L}\\p{M}\\p{S}\\p{N}\\p{P}\\n\\r\\t]*$" } } } } }