home.social

#dependencymanagementdata — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #dependencymanagementdata, aggregated by home.social.

  1. Creating beautiful visualisations of dependency data with Evidence

    How to use Dependency Management Data and Evidence to create beautiful visualisations for insights about your dependency data.

    fed.brid.gy/r/https://www.jvt.

  2. Dependency Management Data's Open Policy Agent support is now a whole lot more efficient

    Talking about the latest release of Dependency Management Data and some refactoring that's led to better performance.

    fed.brid.gy/r/https://www.jvt.

  3. Dynamically querying EndOfLife.date data for internal packages with Open Policy Agent and Dependency Management Data

    How you can retrieve End-of-Life data via EndOfLife.date using Dependency Management Data's Policies functionality.

    fed.brid.gy/r/https://www.jvt.

  4. You can now use Open Policy Agent with dependency-management-data

    How to use Open Policy Agent to perform much more effective flagging of package compliance with dependency-management-data.

    fed.brid.gy/r/https://www.jvt.

  5. Plea to Software Composition Analysis (SCA) providers and Software Bill of Materials (SBOMs) producers: give us more data!

    Why I think dependency scanning tooling should be providing as much data as possible about scanned projects, to allow other tooling to make better inferences about the data.

    fed.brid.gy/r/https://www.jvt.