Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Update to latest frizbee #22

Merged
merged 1 commit into from
Jun 18, 2024
Merged

Update to latest frizbee #22

merged 1 commit into from
Jun 18, 2024

Conversation

jhrozek
Copy link
Contributor

@jhrozek jhrozek commented Jun 18, 2024

Updates to v0.0.20

Copy link
Member

@stacklokbot stacklokbot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Dependency Information

Minder analyzed the dependencies introduced in this pull request and detected that some dependencies do not meet your security profile.

📦 Dependency: github.com/stacklok/frizbee

Trusty Score: 4.8

Scoring details
Component Score
Malicious false
User activity 6.3
Repository activity 3.3
From activity
Package activity 4.8
Provenance 10
Trust-summary 4.1
Proof of Origin (Provenance)

This package can be linked back to its source code using a historical provenance map.

We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.

Published package versions 19
Number of git tags or releases 18
Versions matched to tags or releases 18

@jhrozek jhrozek merged commit 829c8e7 into stacklok:main Jun 18, 2024
2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants