<metapackage xmlns:os="http://opensuse.org/Standards/One_Click_Install" xmlns="http://opensuse.org/Standards/One_Click_Install">
  <group>
    <repositories>
      <repository recommended="true">
        <name>home:dgarcia:SLFO:Main</name>
        <summary>Python stack update project</summary>
        <description></description>
        <url>https://download.opensuse.org/repositories/home:/dgarcia:/SLFO:/Main/standard/</url>
      </repository>
      <repository recommended="false">
        <name>SUSE:SLFO:Main</name>
        <summary></summary>
        <description></description>
        <url>https://download.opensuse.org/repositories/SUSE:/SLFO:/Main/standard/</url>
      </repository>
    </repositories>
    <software>
      <item>
        <name>vexctl</name>
        <summary>CLI tool to create, transform and attest VEX metadata</summary>
        <description>vexctl is a CLI tool to create, apply, and attest VEX (Vulnerability
Exploitability eXchange) data. Its purpose is to help with the creation and
management of VEX documents that allow &quot;turning off&quot; security scanner alerts of
vulnerabilities known not to affect a product.

VEX can be thought of as a &quot;negative security advisory&quot;. Using VEX, software
authors can communicate to their users that an otherwise vulnerable component
has no security implications for their product.</description>
      </item>
    </software>
  </group>
</metapackage>
