Skip to content

Conversation

@JPLachance
Copy link
Member

  • Configure Dependency Review

Dependency review helps you understand dependency changes and the security impact of these changes at every pull request. It provides an easily understandable visualization of dependency changes with a rich diff on the "Files Changed" tab of a pull request.

The warning for .github/workflows/dependency-review.yml is expected.

https://coveord.atlassian.net/browse/DEF-657

J:DEF-657

+ Configure Dependency Review

Dependency review helps you understand dependency changes and the security impact of these changes at every pull request. It provides an easily understandable visualization of dependency changes with a rich diff on the "Files Changed" tab of a pull request.

The warning for .github/workflows/dependency-review.yml is expected.

https://coveord.atlassian.net/browse/DEF-657

J:DEF-657
@JPLachance JPLachance requested review from a team, louis-bompart, mrrajamanickam-coveo and olamothe and removed request for a team April 21, 2023 19:09
@github-actions
Copy link

Dependency Review

The following issues were found:
  • ✅ 0 vulnerable package(s)
  • ✅ 0 package(s) with incompatible licenses
  • ✅ 0 package(s) with invalid SPDX license definitions
  • ⚠️ 1 package(s) with unknown licenses.
See the Details below.

License Issues

.github/workflows/dependency-review.yml

PackageVersionLicenseIssue Type
coveo/public-actions/.github/workflows/dependency-review.ymlmainNullUnknown License
Allowed Licenses: 0BSD, Apache-2.0, Beerware, BlueOak-1.0.0, BSD-1-Clause, BSD-2-Clause, BSD-2-Clause-Patent, BSD-2-Clause-Views, BSD-3-Clause, BSD-3-Clause-Attribution, BSD-3-Clause-Clear, BSL-1.0, CC0-1.0, CNRI-Python, curl, HPND, IBM-pibs, ISC, JSON, MIT, MIT-0, MIT-advertising, mpi-permissive, NCSA, PDDL-1.0, Plexus, PostgreSQL, PSF-2.0, Python-2.0, Python-2.0.1, SAX-PD, Unlicense, UPL-1.0, W3C, Wsuipa, WTFPL, X11, X11-distribute-modifications-variant, Xerox, Zlib, ZPL-2.1

Scanned Manifest Files

.github/workflows/dependency-review.yml
  • coveo/public-actions/.github/workflows/dependency-review.yml@main

@louis-bompart louis-bompart changed the title Create dependency-review.yml chore: create dependency-review.yml Apr 21, 2023
@louis-bompart louis-bompart merged commit f3889db into main Apr 21, 2023
y-lakhdar pushed a commit that referenced this pull request Jun 20, 2023
+ Configure Dependency Review

Dependency review helps you understand dependency changes and the security impact of these changes at every pull request. It provides an easily understandable visualization of dependency changes with a rich diff on the "Files Changed" tab of a pull request.

The warning for .github/workflows/dependency-review.yml is expected.

https://coveord.atlassian.net/browse/DEF-657

J:DEF-657
@y-lakhdar y-lakhdar deleted the feature/DEF-657 branch November 21, 2023 20:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants