[[["易于理解","easyToUnderstand","thumb-up"],["解决了我的问题","solvedMyProblem","thumb-up"],["其他","otherUp","thumb-up"]],[["很难理解","hardToUnderstand","thumb-down"],["信息或示例代码不正确","incorrectInformationOrSampleCode","thumb-down"],["没有我需要的信息/示例","missingTheInformationSamplesINeed","thumb-down"],["翻译问题","translationIssue","thumb-down"],["其他","otherDown","thumb-down"]],["最后更新时间 (UTC):2025-04-02。"],[[["Artifact Analysis generates and stores Software Bill of Materials (SBOMs) for container images in Artifact Registry, aiding in understanding software dependencies and improving security."],["SBOMs created by Artifact Analysis are in SPDX 2.3 format, with support for uploading SBOMs in other formats, and are stored in Cloud Storage within your Google Cloud project."],["Artifact Analysis supports various package types including OS, Java (Maven), Go, Python, and Node.js (npm) and provides a Grafeas SBOM reference occurrence with details like Cloud Storage location, hash, and signature."],["In addition to SBOMs, Artifact Analysis generates a Grafeas package occurrence for each installed package, including version, type, and license information, but only for images stored in Artifact Registry."],["The platform will only work for images stored within Artifact Registry, and not the deprecated Container Registry, so transitioning from Container Registry to Artifact Registry is necessary to utilize these features."]]],[]]