openedx / wg-security

A repo to keep public issues related to Security Working Group Work
1 stars 0 forks source link

Discovery on better visibility for supply chain security issues #10

Open pshiu opened 1 year ago

pshiu commented 1 year ago

From OEP-60: https://open-edx-proposals.readthedocs.io/en/latest/processes/oep-0060-proc-sec-group.html#focus-on-proactive-security-improvements

Example of problems: outdated or deprecated dependencies.

How can we take advantage of the alerts that GitHub provides for security prioritization?