bundler-audit
https://github.com/rubysec/bundler-audit
Ruby
Patch-level verification for Bundler
Triage Issues!
When you volunteer to triage issues, you'll receive an email each day with a link to an open issue that needs help in this project. You'll also receive instructions on how to triage issues.
Triage Docs!
Receive a documented method or class from your favorite GitHub repos in your inbox every day. If you're really pro, receive undocumented methods or classes and supercharge your commit history.
1 Subscribers
Add a CodeTriage badge to bundler-audit
Help out
- Issues
- Handle empty array of ignores in yaml file
- Add support for gems.rb and gems.locked files (fixes #325)
- Add `exclude` option to skip gems by name during audit
- Add SECURITY.md vulnerability reporting policy
- add support for empty array of ingores
- Combine ignored CVEs from both --config with --ignore flag
- Include other system critical advisory data
- Feature request: Allow group selection
- Support matching rubygems version to tag in GitHub or warn
- Allow passing multiple Gemfile.lock files to bundler audit
- Docs
- Subscribe to help with docs for this repo and come back later