Skip to content

purl-next: Validate the integrity of PURL source and binaries of popular packages in major package ecosystems. #61

@pombredanne

Description

@pombredanne

We should be auditing the integrity of PURLs for source and binaries to detect malicious backdoors or missing source code for the 5,000 most popular PURLs in major package ecosystems, and working with upstream FOSS projects and ecosystems to resolve the key security issues uncovered.

This is about running map_deploy_to_devel and analyzing results

Sub-issues

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

Status

Review ready

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions