/v1/bomUpload a CycloneDX bill of materials
Uploads a CycloneDX bill of materials (BOM) and starts processing it for a project. Send the BOM as multipart form data; identify the project with project, or supply both projectName and projectVersion, and use autoCreate to create a project when needed. The response includes a token for checking processing progress; BOM uploads require the BOM_UPLOAD permission, and creating a project also requires one of the documented project-creation permissions.
- IdempotentThe SDK sends
Idempotency-Key, so a retried request is only applied once.
Multipart form data containing a CycloneDX BOM and optional project creation and metadata settings.
A 400 is returned when the uploaded BOM is invalid. A 401 is returned when the request is unauthorized. A 403 is returned when access to the project is forbidden or the required permission is missing. A 404 is returned when the project cannot be found. Supply a valid CycloneDX BOM; uncompressed files must use application/xml or application/json, while compressed files must use application/gzip or application/zstd matching the actual compression. Identify the project with project, or provide both projectName and projectVersion.