Skip to content

Conversation

@safedep-bot
Copy link

🚀 Protect Against Risky Open Source Components

Integrates vet to automate vetting of OSS packages for security vulnerabilities, malicious code and other risks.
This PR is raised on behalf of OmkarPh using https://vetpkg.dev/gha.

Why?

This PR integrates vet to automate vetting of OSS packages for security vulnerabilities, malware and other risks.
The policy is configured to be minimal, checking only for common OSS risks. The policy can be fine tuned / improved based on as required.

Example

example

Learn more

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant