actions/dependency-review-action
A GitHub Action for detecting vulnerable dependencies and invalid licenses in your PRs
TypeScriptMIT
Issues
- 1
- 2
[BUG] mypy 1.12 and 1.13 problems determining license
#839 opened by emlowe - 1
- 6
- 6
Allow this action to run on branch
#754 opened by writemevm - 7
- 2
[BUG] Incompatible licenses in actions/setup-python
#842 opened by mryzhov - 3
[BUG] unexpected addition of `AND NOASSERTION` to license when updating pywin32-ctypes
#818 opened by altendky - 2
- 2
- 4
[BUG] Action fails in merge queue with v4.3.5
#841 opened by kylebjordahl - 4
[BUG] Error "fetch failed" when using proxy
#814 opened by lindeberg - 1
- 13
Job Summary Size Limitation aborts the job [BUG]
#786 opened by Shweta4398 - 3
- 3
MIT is an invalid SPDX license identifier?
#742 opened by recurly-bearley - 1
Create a PR check for default values in action.yml
#723 opened by febuiles - 0
Different configuration per package type?
#834 opened by steve-gore-snapdocs - 1
Add Scopes to Scanned Manifest Files inventory
#713 opened by felickz - 0
[BUG] `allow-dependencies-licenses` not respected after changing from `==` to `>=` with Python
#812 opened by altendky - 0
- 0
Add option for commit status check
#825 opened by ebickle - 0
- 1
- 1
[BUG] Dependency Review gets stuck if forked .
#820 opened by Shweta4398 - 6
Packages being flagged incorrectly with invalid SPDX license definitions
#809 opened by shubhashish-certa - 0
Print `Dependency Changes` in PR comment
#813 opened by wzieba - 0
Report of existing Branch
#808 opened by wortkotze - 0
Support for GHES
#805 opened by x3dfxjunkie - 0
- 8
- 0
[BUG] Listing too many allow-dependencies-licenses makes the summary output unreadable
#801 opened by jtomkiew-mng - 6
Adding a license in 'allow-dependencies-licenses' does not prevent it from being populated in "invalid-license-changes"
#764 opened by sreya - 9
- 2
Job Summary Size Limitation aborts the job
#774 opened by alagappanu - 3
error "fetch failed" with v4.2.5
#736 opened by cpanato - 1
Why is this not named `dependency-review`
#780 opened by jasonkarns - 1
[BUG] When the report exceeds 64KB pr issue is not created since it exceeds max comment issue
#779 opened by tspascoal - 2
- 4
Error :- Purl String argument is required .
#763 opened by Shweta4398 - 3
- 3
Latest release breaks dependabot
#757 opened by phlax - 6
v4.3.0 Causing PURL Processing Errors
#752 opened by watercable76 - 3
- 3
Scorecard table URLs include duplicate https://
#738 opened by phyrog - 2
Question: Is this action limited to revisions on the _default_ branch only?
#743 opened by andreas-borglin - 1
Feature Request: Block on unknown licenses
#732 opened by austimkelly - 5
Blocking issues (should block but does not)
#714 opened by austimkelly - 3
- 3
Invalid URL for OpenSSF Scorecard Package
#718 opened by dupuy