-
Notifications
You must be signed in to change notification settings - Fork 5
Open
Description
Thanks guys, this will be a really useful extension if I can get it to work.
It feels like there are some details missing from the extension docs or the socket.dev page:
- Detailed install steps
- What settings are required (if any)
- Is the extension functionally dependent on payed tiers (I assume not as it states it works without the api)
- What should users expect so see in the ui for different package scores
Steps to repro:
- Create free tier account on socket.dev
- Create an api key as per docs
- Install the VS Code extension
- Restart VS Code
- Connect to the socket.dev api with the key
- confirm
[info] Socket Security extension started - Open my project package.json
Expected
A warning and overlay of dependencies that pose risk as per docs at https://docs.socket.dev/docs/socket-for-vs-code
Actual
No warning on obviously out of date dependencies. Only a score shown on hover of dependency, e.g.
Env
- MacOS 15.7
- VS Code 1.104.2
- socketsecurity.vscode-socket-security 2.0.3
Metadata
Metadata
Assignees
Labels
No labels