aboutcode-org / aboutcode-org/vulnerablecode

Enhancement: provide ability for a user to "follow" a vulnerability or a package

未关闭
#1,271 0 条评论 0 个 reaction 已指派 1 人 已被 @DennisClark 认领 在 GitHub 查看
design-needed effort:large enhancement feature
主要语言
Python
星标
702
派生
328
平均合并
3 天 8 小时
30 天内合并 PR
3

描述

Given the very dynamic nature of vulnerability discovery and fixing, it would be super useful if a user could "follow" a vulnerability or package (perhaps without the version) so that VCIO would send that user a notification (via email or something in the VCIO UI or both) that would alert the user to updates. This could possibly be a better use of application system resources, since the user would not necessarily have to make frequent queries.

There is of course a potential privacy concern about this idea, but there may be a solution for that as well.

Naturally, this idea also assumes that the user, with contact info, can be identified by VCIO, so this could be a rather ambitious undertaking; however, it could introduce more interactivity, which is probably a good thing.

Design needed of course!

贡献指南

这个仓库没有索引到贡献指南

评估

这个 Issue 还没有评估数据。

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。