Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

feat: policy groups page #82

Draft
wants to merge 31 commits into
base: staging
Choose a base branch
from
Draft

Conversation

arunanshub
Copy link
Contributor

Closes #76

Copy link

vercel bot commented Feb 10, 2025

The latest updates on your projects. Learn more about Vercel for Git ↗︎

Name Status Preview Comments Updated (UTC)
platform-safedep-io ✅ Ready (Inspect) Visit Preview 💬 Add feedback Feb 14, 2025 0:18am

Copy link

github-actions bot commented Feb 10, 2025

vet Summary Report

This report is generated by vet

Policy Checks

  • ❌ Vulnerability
  • ❌ Malware
  • ✅ License
  • ❌ Popularity
  • ❌ Maintenance
  • ✅ Security Posture
  • ✅ Threats

Malicious Package Analysis

Malicious package analysis is performed using SafeDep Cloud API.

Malicious Package Analysis Report
Ecosystem Package Version Status Report
ECOSYSTEM_NPM @next/swc-linux-arm64-musl 15.1.7 🔗
ECOSYSTEM_NPM heavy 1.0.0 🔗
ECOSYSTEM_NPM h2o2 1.0.1 🔗
ECOSYSTEM_NPM lodash 2.4.2 🔗
ECOSYSTEM_NPM catbox-memory 1.1.2 🔗
ECOSYSTEM_NPM subtext 1.1.1 🔗
ECOSYSTEM_NPM topo 1.1.0 🔗
ECOSYSTEM_NPM @next/swc-linux-arm64-gnu 15.1.7 🔗
ECOSYSTEM_NPM terser 5.38.2 🔗
ECOSYSTEM_NPM vise 1.0.0 🔗
ECOSYSTEM_NPM bossy 1.0.3 🔗
ECOSYSTEM_NPM boom 2.10.1 🔗
ECOSYSTEM_NPM @next/env 15.1.7 🔗
ECOSYSTEM_NPM kilt 1.1.1 🔗
ECOSYSTEM_NPM @next/swc-linux-x64-musl 15.1.7 🔗
ECOSYSTEM_NPM cryptiles 2.0.5 🔗
ECOSYSTEM_NPM pez 1.0.0 🔗
ECOSYSTEM_NPM moment 2.30.1 🔗
ECOSYSTEM_NPM catbox 3.4.3 🔗
ECOSYSTEM_NPM qs 4.0.0 🔗
ECOSYSTEM_NPM mimos 1.0.1 🔗
ECOSYSTEM_NPM @hookform/resolvers 4.0.0 🔗
ECOSYSTEM_NPM valibot 1.0.0-rc.0 🔗
ECOSYSTEM_NPM lru-cache 2.7.3 🔗
ECOSYSTEM_NPM vision 1.2.2 🔗
ECOSYSTEM_NPM @next/swc-darwin-arm64 15.1.7 🔗
ECOSYSTEM_NPM sonner 1.7.4 🔗
ECOSYSTEM_NPM @next/swc-win32-arm64-msvc 15.1.7 🔗
ECOSYSTEM_NPM wreck 6.3.0 🔗
ECOSYSTEM_NPM lru-cache 2.5.2 🔗
ECOSYSTEM_NPM joi 4.9.0 🔗
ECOSYSTEM_NPM @next/swc-linux-x64-gnu 15.1.7 🔗
ECOSYSTEM_NPM @next/swc-darwin-x64 15.1.7 🔗
ECOSYSTEM_NPM qs 2.4.2 🔗
ECOSYSTEM_NPM iron 2.1.3 🔗
ECOSYSTEM_NPM nigel 1.0.1 🔗
ECOSYSTEM_NPM call 1.0.0 🔗
ECOSYSTEM_NPM b64 2.0.1 🔗
ECOSYSTEM_NPM accept 1.1.0 🔗
ECOSYSTEM_NPM items 1.1.1 🔗
ECOSYSTEM_NPM nipple 2.5.6 🔗
ECOSYSTEM_NPM wreck 5.6.1 🔗
ECOSYSTEM_NPM content 1.0.2 🔗
ECOSYSTEM_NPM @next/swc-win32-x64-msvc 15.1.7 🔗
ECOSYSTEM_NPM @types/node 20.17.18 🔗
ECOSYSTEM_NPM hoek 2.16.3 🔗
ECOSYSTEM_NPM statehood 1.2.0 🔗
ECOSYSTEM_NPM semver 2.3.2 🔗
ECOSYSTEM_NPM badge 1.0.3 ⚠️ 🔗
ECOSYSTEM_NPM q 1.5.1 🔗
ECOSYSTEM_NPM shot 1.7.0 🔗
ECOSYSTEM_NPM isemail 1.2.0 🔗
ECOSYSTEM_NPM vaul 1.1.2 🔗
ECOSYSTEM_NPM date-fns 4.1.0 🔗
ECOSYSTEM_NPM hapi 6.11.1 🔗
ECOSYSTEM_NPM next 15.1.7 🔗
  • ℹ️ 56 packages have been actively analyzed for malicious behaviour.
  • 🟠 1 packages are identified as suspicious.
Changed Packages

Changed Packages

Policy Violations

Packages Violating Policy

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Critical or high risk vulnerabilities were found
  • ⚡ Upgrade to @
  • ⚡ Upgrade to [email protected]

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained
  • ⚡ Upgrade to @

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component popularity is low by Github stars count
  • ⚠️ MalwareAnalyzer: Package ECOSYSTEM_NPM/badge/1.0.3 is classified as suspicious
  • ⚡ Use an alternative package that is popular

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Critical or high risk vulnerabilities were found
  • ⚡ Upgrade to @
  • ⚡ Upgrade to [email protected]

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Critical or high risk vulnerabilities were found
  • ⚡ Upgrade to @
  • ⚡ Upgrade to [email protected]

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Critical or high risk vulnerabilities were found
  • ⚡ Upgrade to @
  • ⚡ Upgrade to [email protected]

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained
  • ⚡ Upgrade to @

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Critical or high risk vulnerabilities were found
  • ⚡ Upgrade to @
  • ⚡ Upgrade to [email protected]

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Critical or high risk vulnerabilities were found
  • ⚡ Upgrade to @
  • ⚡ Upgrade to [email protected]

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component popularity is low by Github stars count
  • ⚡ Use an alternative package that is popular

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

[Npm] [email protected] 🔗

  • ➡️ Found in manifest pnpm-lock.yaml
  • ⚠️ Component appears to be unmaintained

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Frontend Support for Policy Management
1 participant