UVicMartletplace / martletplace

Recreating FB Marketplace for Students - UVic SENG499 Capstone Project
1 stars 0 forks source link

Supply chain security CI for each service #136

Closed MNThomson closed 1 week ago

MNThomson commented 3 weeks ago

Feature Description

Scan all service package import files in CI with GuardDog

Problem You're Trying to Solve

Developers will commonly either add or upgrade dependencies without checking security advisories (understandable). This leads to malicious code being imported and ran on both developer as well as production machines.