Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: Misc change #4

Closed
wants to merge 2 commits into from
Closed

Conversation

abhisek
Copy link
Member

@abhisek abhisek commented Oct 18, 2023

No description provided.

@safedep
Copy link

safedep bot commented Oct 18, 2023

Findings Executive Summary

@safedep
Copy link

safedep bot commented Oct 18, 2023

Findings Executive Summary

[xxxx] Found Risks with Dependent Libraries

Description

Various Issues found with dependent libraries

Tool Output

# Vet Report

## Summary

|           |                       |
|-----------|-----------------------|
| Critical Vulns  | 0  |
| High Vulns  | 0  |
| Other Vulns  | 0  |
| Unpopular Packages  | 1  |
| Major Version Differences  | 0  |
| Manifests | 1 |
| Total Packages  | 3  |
| Exepmted Packages | 140 |




## Results

| Manifest | Ecosystem | Packages | Need Update |
|----------|-----------|----------|--------------------------|
| /tmp/downloaded_file.1154421544 | Maven | 142 | 0 |

## Policy Violation


| Ecosystem | Package | Reason |
|-----------|---------|--------|
| Maven | io.github.x-stream:[email protected] | low-popularity |


## Remediation Advice

The table below lists advice for dependency upgrade to mitigate one or more
issues identified during the scan.


> /tmp/downloaded_file.1154421544

| Package | Update Version | Impact Score | Issues | Tags   |
|---------|----------------|--------------|--------|--------|
| io.github.x-stream:[email protected] | 1.2.2 | 2 | - | [low popularity]




@abhisek abhisek closed this Oct 18, 2023
@abhisek abhisek reopened this Oct 18, 2023
@safedep
Copy link

safedep bot commented Oct 18, 2023

Findings Executive Summary

[xxxx] Found Risks with Dependent Libraries

Description

Various Issues found with dependent libraries

Tool Output

# Vet Report

## Summary

|           |                       |
|-----------|-----------------------|
| Critical Vulns  | 0  |
| High Vulns  | 0  |
| Other Vulns  | 0  |
| Unpopular Packages  | 1  |
| Major Version Differences  | 0  |
| Manifests | 1 |
| Total Packages  | 3  |
| Exepmted Packages | 140 |




## Results

| Manifest | Ecosystem | Packages | Need Update |
|----------|-----------|----------|--------------------------|
| /tmp/downloaded_file.1959585165 | Maven | 142 | 0 |

## Policy Violation


| Ecosystem | Package | Reason |
|-----------|---------|--------|
| Maven | io.github.x-stream:[email protected] | low-popularity |


## Remediation Advice

The table below lists advice for dependency upgrade to mitigate one or more
issues identified during the scan.


> /tmp/downloaded_file.1959585165

| Package | Update Version | Impact Score | Issues | Tags   |
|---------|----------------|--------------|--------|--------|
| io.github.x-stream:[email protected] | 1.2.2 | 2 | - | [low popularity]




@abhisek abhisek closed this Oct 18, 2023
@abhisek abhisek reopened this Oct 18, 2023
@safedep
Copy link

safedep bot commented Oct 18, 2023

Findings Executive Summary

[xxxx] Found Risks with Dependent Libraries

Description

Various Issues found with dependent libraries

Tool Output

# Vet Report

## Summary

|           |                       |
|-----------|-----------------------|
| Critical Vulns  | 0  |
| High Vulns  | 0  |
| Other Vulns  | 0  |
| Unpopular Packages  | 1  |
| Major Version Differences  | 0  |
| Manifests | 1 |
| Total Packages  | 3  |
| Exepmted Packages | 140 |




## Results

| Manifest | Ecosystem | Packages | Need Update |
|----------|-----------|----------|--------------------------|
| /tmp/downloaded_file.365439164 | Maven | 142 | 0 |

## Policy Violation


| Ecosystem | Package | Reason |
|-----------|---------|--------|
| Maven | io.github.x-stream:[email protected] | low-popularity |


## Remediation Advice

The table below lists advice for dependency upgrade to mitigate one or more
issues identified during the scan.


> /tmp/downloaded_file.365439164

| Package | Update Version | Impact Score | Issues | Tags   |
|---------|----------------|--------------|--------|--------|
| io.github.x-stream:[email protected] | 1.2.2 | 2 | - | [low popularity]




@abhisek abhisek closed this Oct 18, 2023
@abhisek abhisek reopened this Oct 18, 2023
@safedep
Copy link

safedep bot commented Oct 18, 2023

Findings Executive Summary

[xxxx] Found Risks with Dependent Libraries

Description

Various Issues found with dependent libraries

Tool Output

# Vet Report

## Summary

|           |                       |
|-----------|-----------------------|
| Critical Vulns  | 0  |
| High Vulns  | 0  |
| Other Vulns  | 0  |
| Unpopular Packages  | 1  |
| Major Version Differences  | 0  |
| Manifests | 1 |
| Total Packages  | 3  |
| Exepmted Packages | 140 |




## Results

| Manifest | Ecosystem | Packages | Need Update |
|----------|-----------|----------|--------------------------|
| /tmp/downloaded_file.2236630786 | Maven | 142 | 0 |

## Policy Violation


| Ecosystem | Package | Reason |
|-----------|---------|--------|
| Maven | io.github.x-stream:[email protected] | low-popularity |


## Remediation Advice

The table below lists advice for dependency upgrade to mitigate one or more
issues identified during the scan.


> /tmp/downloaded_file.2236630786

| Package | Update Version | Impact Score | Issues | Tags   |
|---------|----------------|--------------|--------|--------|
| io.github.x-stream:[email protected] | 1.2.2 | 2 | - | [low popularity]




@abhisek abhisek closed this Oct 19, 2023
@abhisek abhisek reopened this Oct 19, 2023
@safedep
Copy link

safedep bot commented Oct 19, 2023

SafeDep OSS Vet

Policy Checks

  • ✅ Vulnerability
  • ✅ Malware
  • ✅ License
  • ❌ Popularity
  • ✅ Maintenance
  • ✅ Security Posture

New Packages

Packages Violating Policy

[Maven] io.github.x-stream:[email protected]

  • ➡️ Found in manifest gradle.lockfile
  • ⚠️ Component popularity is low by Github stars count
  • ⚡ Use an alternative package that is popular

@abhisek abhisek closed this Oct 19, 2023
@abhisek abhisek reopened this Oct 19, 2023
@safedep
Copy link

safedep bot commented Oct 19, 2023

Findings Executive Summary

[xxxx] Found Risks with Dependent Libraries

Description

Various Issues found with dependent libraries

Tool Output

# Vet Report

## Summary

|           |                       |
|-----------|-----------------------|
| Critical Vulns  | 0  |
| High Vulns  | 0  |
| Other Vulns  | 0  |
| Unpopular Packages  | 1  |
| Major Version Differences  | 0  |
| Manifests | 1 |
| Total Packages  | 3  |
| Exepmted Packages | 140 |




## Results

| Manifest | Ecosystem | Packages | Need Update |
|----------|-----------|----------|--------------------------|
| /tmp/downloaded_file.1103039769 | Maven | 142 | 0 |

## Policy Violation


| Ecosystem | Package | Reason |
|-----------|---------|--------|
| Maven | io.github.x-stream:[email protected] | low-popularity |


## Remediation Advice

The table below lists advice for dependency upgrade to mitigate one or more
issues identified during the scan.


> /tmp/downloaded_file.1103039769

| Package | Update Version | Impact Score | Issues | Tags   |
|---------|----------------|--------------|--------|--------|
| io.github.x-stream:[email protected] | 1.2.2 | 2 | - | [low popularity]




@abhisek abhisek closed this Oct 19, 2023
@abhisek abhisek reopened this Oct 19, 2023
@abhisek abhisek closed this Oct 19, 2023
@abhisek abhisek reopened this Oct 19, 2023
@abhisek abhisek closed this Oct 20, 2023
@abhisek abhisek reopened this Oct 20, 2023
@abhisek abhisek closed this Oct 20, 2023
@abhisek abhisek reopened this Oct 20, 2023
@abhisek abhisek closed this Oct 20, 2023
@abhisek abhisek reopened this Oct 20, 2023
@abhisek abhisek closed this Oct 20, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 23, 2023
@abhisek abhisek reopened this Oct 23, 2023
@abhisek abhisek closed this Oct 24, 2023
@abhisek abhisek reopened this Oct 24, 2023
@abhisek abhisek closed this Oct 27, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant