Create Compliance Reports for your Container Images
Overview
This article will showcase the steps to generate Attribution and Due Diligence reports for Container Image projects via the Mend Platform’s Reports page.
These reports may interest you if you are an AppSec Manager or a member of the Legal department, in charge of licensing and compliance for your company.
Getting it done
To create an Attribution or Due Diligence report:
While logged into the Mend Platform, click ‘Reports’ at the top of the user interface:
Click the ‘Create’ button at the right edge of the screen:
Report Type
Make sure that the Containers
filter is on and select the desired report from the drop-down menu:
Attribution report
Scope
Choose the scope for your report. Note that the Attribution report can include data from the entire organization (therefore the Application field is optional), a specific application, a specific project or multiple projects within the chosen application.
Example:
Configuration
Specify a name for your report and select the format (JSON/HTML).
Expand the Advanced configuration to specify report footers/headers, choose how to handle reference-less licenses and choose text placement in your report.
Choose what type of information to include in your report by ticking the desired checkboxes under ‘Reporting Scope’:
Click the ‘Create’ button at the bottom right corner of the screen:
Once the report generation completes, it will be indicated at the bottom-left corner of the screen:
To download your report, jump to the Download section of this article.
Due Diligence report
Scope
Choose the scope for your report. Note that you can generate the report for one application at a time, although you can include data from more than one project from that application in your report:
Configuration
Specify a name for your report and select the format (JSON/XML):
Click the ‘Create’ button at the bottom right corner of the screen:
Once the report generation completes, it will be indicated at the bottom-left corner of the screen:
Download
At this stage, the report will be added to the list of reports in the main Reports page, allowing you to download it by clicking the More Options button (vertical ellipsis) at the right edge of the screen and then ‘Download’: