We have .safety-policy.yml file defined like this:
security:
ignore-vulnerabilities:
59901:
reason: Some reason
expires: '2024-03-15'
62044:
reason: No upstream python images provide updated pip for now
expires: '2024-01-01'
the safety validate policy_file --path .safety-policy.yml outputs:
The Safety policy file was successfully parsed with the following values:
{
"security": {
"ignore-vulnerabilities": {
"59901": {
"reason": "Some reason",
"expires": "2024-03-15 00:00:00"
},
"62044": {
"reason": "No upstream python images provide updated pip for now",
"expires": "2024-01-01 00:00:00"
}
}
},
"filename": ".safety-policy.yml"
}
however, when I run the safety check safety check --policy-file .safety-policy.yml I still get the 59901 reported as vulnerability.
Description
We have .safety-policy.yml file defined like this:
the
safety validate policy_file --path .safety-policy.yml
outputs:however, when I run the safety check
safety check --policy-file .safety-policy.yml
I still get the 59901 reported as vulnerability.