sbp commented on issue #87: URL: https://github.com/apache/tooling-trusted-releases/issues/87#issuecomment-3422580149
Added a basic OSV vulnerability scanner in 7bbb22e00494948817499f12f7ce05f68e43635c, 3355ee0069c9ac310789368ae318963576bcff75, and 9adefac69ef4833a54541170a5cd2cae131746a6. The UI for this is _very_ rough. This could do with a lot of further work, but I'll create a separate issue for that now that we've got the core functionality here. I'll also create an issue to improve license compliance scanning, because that has numerous challenges associated with it, and an issue for attestation work which we are yet to start implementing. -- This is an automated message from the Apache Git Service. To respond to the message, please log on to GitHub and use the URL above to go to the specific comment. To unsubscribe, e-mail: [email protected] For queries about this service, please contact Infrastructure at: [email protected] --------------------------------------------------------------------- To unsubscribe, e-mail: [email protected] For additional commands, e-mail: [email protected]
