Comfy-Org / Comfy-Org/ComfyUI-Manager
RMR: WAS Node Suite v3.2.2
- Dominant language
- Python
- Stars
- 16.1k
- Forks
- 2.5k
- Avg merge
- 5d 4h
- Merged PRs (30d)
- 13
Description
Since manual review process closed I was able to get the full report, and where applicable, have made sweeping revisions to pack. After polling workflows in the wild I decided to retire a few nodes as apposed to deprecation. I've also implemented a few systems into the build process that verifies upstream vendor code, that being said, vendor code is vendor code, and out-of-bounds to modify extensively and chain-of-trust should be considered.
To help the manual review process I have a report written for the security angle of the pack, which also points out lockdowns, and non-active detections.
https://github.com/WASasquatch/was-node-suite-comfyui/blob/main/SECURITY.md
Contributor guide
No contributing guide indexed for this repository
Research direction
Read the issue context and the linked SECURITY.md first. The report describes revisions, retired nodes, vendor-code verification, and security findings, but it does not identify a specific file, failing test, or requested change. A concrete scope and acceptance criteria are needed before a newcomer can determine what done means.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- python
- Domain
- security, tooling
- Issue type
- Feature
- Difficulty
- 5/5
- Estimated time
- Over a week
- Activity status
- Active
- Clarity
- Needs clarification
- Newbie friendliness
- 25/100