vile-bundler-audit
v0.3.6
Published
Audit your Gemfile for known vulernabilities and insecure sources.
Downloads
7
Maintainers
Readme
vile-bundler-audit
A Vile plugin for auditing your Gemfile for known vulnerabilities and insecure sources (via bundler-audit).
Requirements
Installation
Currently, you need to have bundler-audit
installed manually.
Example:
npm i vile-bundler-audit
gem install bundler-audit
Usage
vile a -p bundler-audit
Config
bundler-audit:
config:
update_db: true # defaults to false
ignore_advisories: [ ".." ]
Versioning
This project uses Semver.
Licensing
This project is licensed under the MPL-2.0 license.
Any contributions made to this project are made under the current license.
Contributions
Current list of Contributors.
Any contributions are welcome and appreciated!
All you need to do is submit a Pull Request.
- Please consider tests and code quality before submitting.
- Please try to keep commits clean, atomic and well explained (for others).
Issues
Current issue tracker is on GitHub.
Even if you are uncomfortable with code, an issue or question is welcome.
Code Of Conduct
By participating in this project you agree to our Code of Conduct.
Maintainers
- Brent Lintner - @brentlintner
Architecture
This project is currently written in Ruby and JavaScript.
bin
houses any shell based scriptssrc
is es6+ syntax compiled with Babellib
generated js librarylib_ruby
ruby shim code
Developing
cd vile-bundler-audit
npm install
gem install rspec
npm run dev
npm test-all