Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Audit transitive dependencies, both with highest and lowest version resolution #7

Open
Tamschi opened this issue Jan 19, 2021 · 1 comment
Labels
type: feature Brand new functionality, features, pages, workflows, endpoints, etc.

Comments

@Tamschi
Copy link
Owner

Tamschi commented Jan 19, 2021

This might be worth looking into, also to make sure it happens for libraries too (where Cargo.lock isn't part of the repository).

@Tamschi Tamschi added the type: feature Brand new functionality, features, pages, workflows, endpoints, etc. label Jan 19, 2021
@Tamschi
Copy link
Owner Author

Tamschi commented Feb 2, 2021

Auditing transitive dependencies evidently already works, so just the check for the minimum version ones needs to be added.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
type: feature Brand new functionality, features, pages, workflows, endpoints, etc.
Projects
None yet
Development

No branches or pull requests

1 participant