Black Duck Detect 11.5.0: More Reliable SBOM Evidence Across Builds
Black Duck Detect 11.5.0 strengthens software composition analysis evidence by correcting dependency parsing and build-tool edge cases that could produce incomplete or inaccurate BOMs. The release moves Quack Patch output into the Detect scan output directory, includes it in diagnostic archives, and adds operational guidance for renamed download domains, SCASS network access, CentOS deprecation, and the planned Java 8 support sunset. Enterprise teams should validate scan-success policies where empty BOMs are now an expected outcome for projects with no dependencies or no matching binaries.
- Black Duck
- Detect
- CI CD
.png&w=2560&q=75)
