Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

add sandworm.dev integration #12

Open
jossef opened this issue Mar 4, 2023 · 3 comments
Open

add sandworm.dev integration #12

jossef opened this issue Mar 4, 2023 · 3 comments
Labels
good first issue Good for newcomers integration Issues regarding adding new integrations

Comments

@jossef
Copy link
Member

jossef commented Mar 4, 2023

Sandworm is a new tool for developers to check npm packages.
They are generating a report with list of issues:

image

Even though the webapp looks like it was statically generated, they may have an API to generate json
see https://docs.sandworm.dev/#json-output (or their CLI source code to see how it fetches the data: https://github.com/sandworm-hq/sandworm-audit)

To display it in the UI you will need their logo, please put here a link to download the logo, so @jossef will convert it to the right size.

@jossef jossef added the integration Issues regarding adding new integrations label Mar 4, 2023
@baruchiro baruchiro added the good first issue Good for newcomers label May 8, 2023
@baruchiro
Copy link
Collaborator

DoD: Add to the README

@itay-goldraich
Copy link
Contributor

I have not found any API for https://blog.sandworm.dev/.

@baruchiro
Copy link
Collaborator

I understand.

Can you explain and give us examples of which data we can retrieve from there?
For example, all the packages I tested were always with "0 issues". Have you seen a package with issues?

Also, I see there is no API, but there is a mechanism of fetching a webpage, and then fetching it again with updated version, we will need to understand how to implement it.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
good first issue Good for newcomers integration Issues regarding adding new integrations
Projects
None yet
Development

No branches or pull requests

3 participants