Skip to content

Conversation

@skshetry
Copy link
Collaborator

GitHub has dependency alerts and dependency security updates that can replace safety.

For the past few months, safety has been raising vulnerability errors for pip and now jinja2. The latter is a dependency of safety itself, and both CVEs are disputed.

Which is breaking CI for us.

GitHub has dependency alerts and dependency security updates
that can replace `safety`.

For the past few months, safety has been raising vulnerability
errors for `pip` and now `jinja2`. The latter is a dependency
of `safety` itself, and both CVEs are disputed.

Which is breaking CI for us.
@skshetry skshetry merged commit 4cdec35 into main Jun 15, 2024
@skshetry skshetry deleted the drop-safety branch June 15, 2024 14:58
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant