aboutcode-org / aboutcode-org/vulnerablecode
Enhancement: provide ability for a user to "follow" a vulnerability or a package
- Dominant language
- Python
- Stars
- 702
- Forks
- 328
- Avg merge
- 3d 8h
- Merged PRs (30d)
- 3
Description
Given the very dynamic nature of vulnerability discovery and fixing, it would be super useful if a user could "follow" a vulnerability or package (perhaps without the version) so that VCIO would send that user a notification (via email or something in the VCIO UI or both) that would alert the user to updates. This could possibly be a better use of application system resources, since the user would not necessarily have to make frequent queries.
There is of course a potential privacy concern about this idea, but there may be a solution for that as well.
Naturally, this idea also assumes that the user, with contact info, can be identified by VCIO, so this could be a rather ambitious undertaking; however, it could introduce more interactivity, which is probably a good thing.
Design needed of course!
Contributor guide
No contributing guide indexed for this repository
Assessment
This issue has not been assessed yet.