Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

dependencies and license checking #462

Open
orangecms opened this issue Jul 24, 2021 · 0 comments
Open

dependencies and license checking #462

orangecms opened this issue Jul 24, 2021 · 0 comments
Labels
Code Health Code Quality & Health

Comments

@orangecms
Copy link
Contributor

orangecms commented Jul 24, 2021

@rjoleary made a good point that we should investigate a few things around our dependencies.
They come from various sources, and they have various licenses.

The Fuchsia project has a Rust dependencies license checker:
https://fuchsia.googlesource.com/scripts/+/3p-dart-pkg/rust/check_rust_licenses.py

We should also investigate if our dependencies are up to date, if they are still maintained, if something else has been established here or there, see if we can reduce some to decrease the probability of malicious code sneaking in, etc..

@orangecms orangecms added the Code Health Code Quality & Health label Jul 24, 2021
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Code Health Code Quality & Health
Projects
None yet
Development

No branches or pull requests

1 participant