bundler-audit
https://github.com/rubysec/bundler-audit
Ruby
Patch-level verification for Bundler
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
1 Subscribers
Add a CodeTriage badge to bundler-audit
Help out
- Issues
- Make the `spec/fixtures/*/Gemfile.lock` files programmaticaly generated
- Run audit automatically on `bundle` or `bundle install` command
- Combine ignored CVEs from both `--config` with `--ignore` flag
- few patche's.
- Move file reading responsibility to the CLI
- Can product info / CPE be included in output?
- Option to include ruby-mem-advisory-db ?
- Allow to ignore specific Gemfile groups
- Add a Security Policy
- Error when an ignored CVE is missing
- Docs
- Subscribe to help with docs for this repo and come back later