HopprCop plug-in removes artifacts with non-supported purl types

name: Bug Report
about: Create a report to help us improve
  • Version: 1.8.4
  • Platform:

When running Hoppr with the HopprCop plugin, all components with purl types generic, docker, and helm are removed from the delivered BOM. Re-running without HopprCop does not remove those components.

It looks like the problem is here. The parsed_bom removes all components that are not of a supported purl type, and returns that bom in its results.

All components should be returned so that further Hoppr processing can be completed.