You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Is your feature request related to a problem? Please describe.
When OSD performs a bootstrap with plugins checked out in the plugins folder, dependencies of OSD gets written to the plugin's lockfile. This results in plugins having OSD dependencies in their lockfile. Subsequent scans of lockfile may falsely call out plugins as vulnerable when the dependency is instead coming from OSD core. Describe the solution you'd like
A clean up script/utility that removes OSD dependencies that plugins do not rely on during bootstrap/yarn.lock writing Describe alternatives you've considered
None Additional context
None
The text was updated successfully, but these errors were encountered:
Is your feature request related to a problem? Please describe.
When OSD performs a bootstrap with plugins checked out in the
plugins
folder, dependencies of OSD gets written to the plugin's lockfile. This results in plugins having OSD dependencies in their lockfile. Subsequent scans of lockfile may falsely call out plugins as vulnerable when the dependency is instead coming from OSD core.Describe the solution you'd like
A clean up script/utility that removes OSD dependencies that plugins do not rely on during bootstrap/yarn.lock writing
Describe alternatives you've considered
None
Additional context
None
The text was updated successfully, but these errors were encountered: