aboutcode-org / aboutcode-org/vulnerablecode

The advisory sources that are not updated should be stored in a common repo and imported from federatedcode-style

Open
#2,064 1 comment 0 reactions 0 assignees View on GitHub
Dominant language
Python
Stars
702
Forks
328
Avg merge
3d 8h
Merged PRs (30d)
3

Description

We have few examples of pipelines/importers like:
- https://github.com/RetireNet/Packages/

- https://github.com/aboutcode-org/vulnerablecode/issues/2039

These kind of importer's data is not updated often, instead of importing this data on regular basis, these advisories should all be stored in a common repo that we can import from federatedcode-style.

We should change these advisories into our standard JSON format, and store them in a common repo.

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.