ossillate-inc / packj

Packj stops :zap: Solarwinds-, ESLint-, and PyTorch-like attacks by flagging malicious/vulnerable open-source dependencies ("weak links") in your software supply-chain
https://packj.dev
GNU Affero General Public License v3.0
648 stars 36 forks source link

Add support for repo-pkg release check #92

Closed ashishbijlani closed 11 months ago

ashishbijlani commented 11 months ago

Support for repo-pkg release check that can flag malicious packages with no Git source repo releases

github-actions[bot] commented 11 months ago

Packj Packj Audit Report

:white_check_mark: No new dependencies are introduced

Triggered by workflow run 73 on commit 87cf3ef904b3443734f845fb0ecb2c6b2f448a23