Skip to content

Conversation

stacklokdemo
Copy link
Contributor

No description provided.

@ghost
Copy link

ghost commented Jul 16, 2024

Minder Vulnerability Report ✅

Minder analyzed this PR and found no vulnerable dependencies.

Vulnerability scan of 8b00aaca:

  • 🐞 vulnerable packages: 0
  • 🛠 fixes available for: 0

@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Oct 24, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Oct 24, 2024
@ghost
Copy link

ghost commented Nov 1, 2024

Dependency Information

Minder analyzed the dependencies introduced in this pull request and detected that some dependencies do not meet your security profile.

📦 Dependency: python-oauth2

⚠️ Archived Package: This package is marked as deprecated. Proceed with caution!

Archived packages are no longer updated or maintained. This can lead to security vulnerabilities and compatibility issues.

Trusty Score: 4.6

Scoring details
Component Score
User activity 5.9
Repository activity 3.3
Package activity 4.6
Trust-summary 3.5
From activity
Provenance 8
Proof of Origin (Provenance)

This package can be linked back to its source code using a historical provenance map.

We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.

Published package versions 13
Number of git tags or releases 13
Versions matched to tags or releases 13
Alternatives
Package Score Description
oauthlib 8

@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@Stacklok-Demo-Org Stacklok-Demo-Org deleted a comment Nov 6, 2024
@ghost
Copy link

ghost commented Nov 22, 2024

Dependency Information

Minder analyzed the dependencies introduced in this pull request and detected that some dependencies do not meet your security profile.

📦 Dependency: python-oauth2

⚠️ Archived Package: This package is marked as deprecated. Proceed with caution!

Archived packages are no longer updated or maintained. This can lead to security vulnerabilities and compatibility issues.

Trusty Score: 0

Scoring details
Component Score
Repository activity 3.3
From activity
Package activity 4.6
Provenance_type historical_provenance_match
Provenance 0
Trust-summary 3.5
User activity 5.9
Proof of Origin (Provenance)

This package can be linked back to its source code using a historical provenance map.

We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.

Published package versions 13
Number of git tags or releases 13
Versions matched to tags or releases 13

@ghost
Copy link

ghost commented Nov 22, 2024

Dependency Information

Minder analyzed the dependencies introduced in this pull request and detected that some dependencies do not meet your security profile.

📦 Dependency: python-oauth2

⚠️ Archived Package: This package is marked as deprecated. Proceed with caution!

Archived packages are no longer updated or maintained. This can lead to security vulnerabilities and compatibility issues.

Trusty Score: 0

Scoring details
Component Score
From activity
Package activity 4.6
Provenance_type historical_provenance_match
Provenance 0
Trust-summary 3.5
User activity 5.9
Repository activity 3.3
Proof of Origin (Provenance)

This package can be linked back to its source code using a historical provenance map.

We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.

Published package versions 13
Number of git tags or releases 13
Versions matched to tags or releases 13

@ghost
Copy link

ghost commented Nov 22, 2024

Dependency Information

Minder analyzed the dependencies introduced in this pull request and detected that some dependencies do not meet your security profile.

📦 Dependency: python-oauth2

⚠️ Archived Package: This package is marked as deprecated. Proceed with caution!

Archived packages are no longer updated or maintained. This can lead to security vulnerabilities and compatibility issues.

Trusty Score: 0

Scoring details
Component Score
Package activity 4.6
Provenance_type historical_provenance_match
Provenance 0
Trust-summary 3.5
User activity 5.9
Repository activity 3.3
From activity
Proof of Origin (Provenance)

This package can be linked back to its source code using a historical provenance map.

We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.

Published package versions 13
Number of git tags or releases 13
Versions matched to tags or releases 13

@ghost
Copy link

ghost commented Nov 25, 2024

Dependency Information

Minder analyzed the dependencies introduced in this pull request and detected that some dependencies do not meet your security profile.

📦 Dependency: python-oauth2

⚠️ Archived Package: This package is marked as deprecated. Proceed with caution!

Archived packages are no longer updated or maintained. This can lead to security vulnerabilities and compatibility issues.

Trusty Score: 0

Scoring details
Component Score
From activity
Package activity 4.6
Provenance_type historical_provenance_match
Provenance 0
Trust-summary 3.5
User activity 5.9
Repository activity 3.3
Proof of Origin (Provenance)

This package can be linked back to its source code using a historical provenance map.

We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.

Published package versions 13
Number of git tags or releases 13
Versions matched to tags or releases 13

1 similar comment
@ghost
Copy link

ghost commented Nov 25, 2024

Dependency Information

Minder analyzed the dependencies introduced in this pull request and detected that some dependencies do not meet your security profile.

📦 Dependency: python-oauth2

⚠️ Archived Package: This package is marked as deprecated. Proceed with caution!

Archived packages are no longer updated or maintained. This can lead to security vulnerabilities and compatibility issues.

Trusty Score: 0

Scoring details
Component Score
From activity
Package activity 4.6
Provenance_type historical_provenance_match
Provenance 0
Trust-summary 3.5
User activity 5.9
Repository activity 3.3
Proof of Origin (Provenance)

This package can be linked back to its source code using a historical provenance map.

We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.

Published package versions 13
Number of git tags or releases 13
Versions matched to tags or releases 13

@ghost
Copy link

ghost commented Dec 2, 2024

Dependency Information

Minder analyzed the dependencies introduced in this pull request and detected that some dependencies do not meet your security profile.

📦 Dependency: python-oauth2

⚠️ Archived Package: This package is marked as deprecated. Proceed with caution!

Archived packages are no longer updated or maintained. This can lead to security vulnerabilities and compatibility issues.

Trusty Score: 0

Scoring details
Component Score
Package activity 4.6
Repository activity 3.3
User activity 5.9
Provenance historical_provenance_match
Proof of Origin (Provenance)

This package can be linked back to its source code using a historical provenance map.

We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.

Published package versions 13
Number of git tags or releases 13
Versions matched to tags or releases 13
Alternatives
Package Score Description
oauthlib 0

1 similar comment
@ghost
Copy link

ghost commented Dec 2, 2024

Dependency Information

Minder analyzed the dependencies introduced in this pull request and detected that some dependencies do not meet your security profile.

📦 Dependency: python-oauth2

⚠️ Archived Package: This package is marked as deprecated. Proceed with caution!

Archived packages are no longer updated or maintained. This can lead to security vulnerabilities and compatibility issues.

Trusty Score: 0

Scoring details
Component Score
Package activity 4.6
Repository activity 3.3
User activity 5.9
Provenance historical_provenance_match
Proof of Origin (Provenance)

This package can be linked back to its source code using a historical provenance map.

We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.

Published package versions 13
Number of git tags or releases 13
Versions matched to tags or releases 13
Alternatives
Package Score Description
oauthlib 0

@ghost
Copy link

ghost commented Mar 25, 2025

Dependency Information

Minder analyzed the dependencies introduced in this pull request and detected that some dependencies do not meet your security profile.

📦 Dependency: python-oauth2

⚠️ Archived Package: This package is marked as deprecated. Proceed with caution!

Archived packages are no longer updated or maintained. This can lead to security vulnerabilities and compatibility issues.

Scoring details
Component Score
Package activity 4.6
Repository activity 3.3
User activity 5.9
Provenance historical_provenance_match
Proof of Origin (Provenance)

This package can be linked back to its source code using a historical provenance map.

We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.

Published package versions 13
Number of git tags or releases 13
Versions matched to tags or releases 13
Alternatives
Package Description
oauthlib

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants