Skip to content

Commit

Permalink
chore: OSV Scanner settings configured (#1738)
Browse files Browse the repository at this point in the history
  • Loading branch information
dadrus authored Aug 25, 2024
1 parent 14fc2de commit f4c74ae
Show file tree
Hide file tree
Showing 2 changed files with 8 additions and 4 deletions.
5 changes: 5 additions & 0 deletions docs/osv-scanner.toml
Original file line number Diff line number Diff line change
@@ -0,0 +1,5 @@
[[PackageOverrides]]
name = "ws"
ecosystem = "npm"
ignore = true
reason = "The entire docs directory is there to generat static html content. Although some of the dependencies may have vulnerabilities, like the ws package, they have no effect as neither inbound nor outbound connections are made during the generation of the content, respectively there is no server, which would use that functionalit, when the generated html documentation is hosted somewhere"
7 changes: 3 additions & 4 deletions osv-scanner.toml
Original file line number Diff line number Diff line change
@@ -1,4 +1,3 @@
[[PackageOverrides]]
name = "docs"
ignore = true
reason = "The results of this directory is generated static html content. Even some of the dependencies may have vulnerabilities they have no effect as neither inbound nor outbound connections are made during the generation of the content."
[[IgnoredVulns]]
id = "GO-2022-0646"
reason = "The access to the S3 bucket happens in read-only mode without making use of the EncryptionClient."

0 comments on commit f4c74ae

Please sign in to comment.