IBM / audit-ci

Audit NPM, Yarn, PNPM, and Bun dependencies in continuous integration environments, preventing integration if vulnerabilities are found at or above a configurable threshold while ignoring allowlisted advisories
Apache License 2.0
263 stars 43 forks source link

WIP: allowlist records #279

Closed quinnturner closed 1 year ago

kyletsang commented 2 years ago

Hey @quinnturner, I'm interested in this functionality. Is there anything I can do to help push this along? I got a bit of time on my hands, so I could help out in the implementation.

quinnturner commented 2 years ago

Hey @kyletsang, you're welcome to take the PR over entirely if you wish! I have time for supporting with approvals and releasing but not implementing right now.

kyletsang commented 2 years ago

Hey @kyletsang, you're welcome to take the PR over entirely if you wish! I have time for supporting with approvals and releasing but not implementing right now.

Sounds good! Thanks!