Skip to content

ISS-924 Add Dependency FAQ - #186

Merged
dhafley merged 2 commits into
mainfrom
iss-924
Aug 9, 2024
Merged

ISS-924 Add Dependency FAQ#186
dhafley merged 2 commits into
mainfrom
iss-924

Conversation

@dhafley

@dhafley dhafley commented Aug 8, 2024

Copy link
Copy Markdown
Contributor

/close #work

@dhafley

dhafley commented Aug 8, 2024

Copy link
Copy Markdown
Contributor Author

/close iss-925

Comment thread docs/faqs.md Outdated
Co-authored-by: Dan D'Avella <drdavella@gmail.com>
Comment thread docs/faqs.md

Users can join the Pixee community [on Slack](https://join.slack.com/t/openpixee/shared_invite/zt-1pnk7jqdd-kfwilrfG7Ov4M8rorfOnUA). This channel can be used to engage with peers who are also interested in Pixee. Feel free to email us at help@pixee.ai with any questions or comments.

### Why does pixee sometimes add new dependencies to my project?

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Uppercase Pixee for consistency

Comment thread docs/faqs.md

### Why does pixee sometimes add new dependencies to my project?

We always prefer to use existing controls built into a language, or a control from a well-known and trusted community dependency. When this is not an option, we add our own open source dependency to the project to ensure maximum readability and maintainability. All dependencies utilize permissive open-source licenses.

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Consider expanding on "when this is not an option". Why is not an option? Maybe "when no such dependency exists that meets that criteria"

Comment thread docs/faqs.md

We always prefer to use existing controls built into a language, or a control from a well-known and trusted community dependency. When this is not an option, we add our own open source dependency to the project to ensure maximum readability and maintainability. All dependencies utilize permissive open-source licenses.

Learn more about the [Java Security Toolkit (io.github.pixee.java-security-toolkit) on Maven Central](https://central.sonatype.com/artifact/io.github.pixee/java-security-toolkit/overview).

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

There's another Java toolkit we maintain specifically for xstream.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants