Skip to content

Snyk SCA vulnerability across several repos flagged as duplicate #9650

Answered by mtesauro
AlBellom asked this question in Q&A
Discussion options

You must be logged in to vote

Are you importing or using re-import? details here

If using re-import, is the scope of what your scanning the same? Or are you scanning repo 1 and importing, then scanning repo 2 and re-importing, then scanning repo 3 and re-importing? For re-imports, it's important that from scan to scan the thing being scanned (aka the scope) is the same.

Are you dedup'ing at the product or engagement level? details here

Have you adjusted the hash algorithm used for dedup'ing Snyk SCA scans? The default is this. Details on how the algorithm works is here

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@AlBellom
Comment options

Answer selected by AlBellom
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants