Uploaded image for project: 'Calunga: Python Wheel Library'
  1. Calunga: Python Wheel Library
  2. CALUNGA-132

enable snyk scanning on sdists

XMLWordPrintable

    • Icon: Story Story
    • Resolution: Unresolved
    • Icon: Normal Normal
    • GeneralAvailability
    • None
    • None
    • 3
    • False
    • Hide

      None

      Show
      None
    • False

      Since snyk cannot scan wheels we decided to move forward without using it in our pipeline. We really should use snyk but use it against the sdist that we get from pypi. These results should not result in a denied build - we should only produce the results and make them available. Maybe we would want to implement some gating in the future around this but we will cross that bridge when we get to it. 

              Unassigned Unassigned
              adecause Anthony DeCausemaker
              Votes:
              0 Vote for this issue
              Watchers:
              1 Start watching this issue

                Created:
                Updated: