Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

npm audit for .NET core #14460

Closed
colotiline opened this issue Sep 26, 2019 · 2 comments
Closed

npm audit for .NET core #14460

colotiline opened this issue Sep 26, 2019 · 2 comments
Labels
External This is an issue in a component not contained in this repository. It is open for tracking purposes. question

Comments

@colotiline
Copy link

colotiline commented Sep 26, 2019

Is your feature request related to a problem? Please describe.

I am trying to do audit NuGet packages in my project for vulnerabilities automatically but I can't.

Ok, we trust NuGet packages by default, but when and how should I know that I need to update any of them?

Describe the solution you'd like

I want a solution that is a dotnet tool and looks like 'npm audit' (https://blog.npmjs.org/post/173719309445/npm-audit-identify-and-fix-insecure).

@khellang
Copy link
Member

This work is already in progress. See the issue and the spec.

@javiercn
Copy link
Member

@colotiline Thanks for contacting us.

We think this a question better asked to the NuGet folks at https://github.com/nuget/home

Hope that helps.

@javiercn javiercn added External This is an issue in a component not contained in this repository. It is open for tracking purposes. question labels Sep 26, 2019
@ghost ghost locked as resolved and limited conversation to collaborators Dec 2, 2019
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
External This is an issue in a component not contained in this repository. It is open for tracking purposes. question
Projects
None yet
Development

No branches or pull requests

3 participants