Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / phylum-dev/cli issues and pull requests

#1476 - Pre-check does not seem to submit unprocessed packages

Issue - State: closed - Opened by furi0us333 7 months ago
Labels: bug, needs triage

#1475 - Bump to v6.6.6

Pull Request - State: closed - Opened by maxrake 7 months ago

#1474 - Remove unnecessary features from git2 dependency

Pull Request - State: closed - Opened by cd-work 7 months ago - 1 comment

#1473 - Fix msbuild parsing with lowercase version field

Pull Request - State: closed - Opened by cd-work 7 months ago

#1472 - Infer repository URL from git info

Pull Request - State: closed - Opened by cd-work 7 months ago - 1 comment

#1471 - Bump to v6.6.5

Pull Request - State: closed - Opened by maxrake 7 months ago

#1470 - ci: use GitHub-hosted macOS runners

Pull Request - State: closed - Opened by maxrake 7 months ago

#1469 - Bump actions/upload-artifact from 4.3.3 to 4.3.4

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 3 comments
Labels: dependencies, github_actions

#1468 - Bump actions/download-artifact from 4.1.7 to 4.1.8

Pull Request - State: closed - Opened by dependabot[bot] 7 months ago - 3 comments
Labels: dependencies, github_actions

#1467 - Fix package-lock.json lockfile parsing failures

Pull Request - State: closed - Opened by cd-work 7 months ago

#1466 - Bump dependencies

Pull Request - State: closed - Opened by phylum-bot 7 months ago

#1465 - Use git info to pre-populate repo url in `ph init`

Issue - State: closed - Opened by furi0us333 7 months ago - 3 comments
Labels: enhancement, low priority, needs triage

#1464 - Bump dependencies

Pull Request - State: closed - Opened by phylum-bot 7 months ago

#1463 - Bump to v6.6.4

Pull Request - State: closed - Opened by maxrake 8 months ago

#1462 - Fix Gradle 5 lockfiles not overriding manifests

Pull Request - State: closed - Opened by cd-work 8 months ago

#1461 - Bump to v6.6.3

Pull Request - State: closed - Opened by maxrake 8 months ago

#1460 - Add support for older Gradle lockfiles

Pull Request - State: closed - Opened by cd-work 8 months ago

#1459 - Support legacy Gradle lockfiles

Issue - State: closed - Opened by maxrake 8 months ago
Labels: enhancement, high priority

#1458 - Bump to v6.6.2

Pull Request - State: closed - Opened by maxrake 8 months ago

#1457 - Add init script for gradle lockfile generation

Pull Request - State: closed - Opened by cd-work 8 months ago

#1456 - Bump dashmap from 5.5.3 to 6.0.1

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago
Labels: dependencies, rust

#1455 - Bump dependencies

Pull Request - State: closed - Opened by phylum-bot 8 months ago

#1454 - Bump curve25519-dalek from 4.1.2 to 4.1.3

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago
Labels: dependencies, rust

#1453 - Bump to v6.6.1

Pull Request - State: closed - Opened by maxrake 8 months ago

#1452 - Fix OpenJDK path detection

Pull Request - State: closed - Opened by cd-work 8 months ago

#1451 - Remove extraneous output from maven generator

Pull Request - State: closed - Opened by cd-work 8 months ago

#1450 - Improve robustness of find-permissions extensions

Pull Request - State: closed - Opened by cd-work 8 months ago

#1449 - Bump actions/checkout from 4.1.6 to 4.1.7

Pull Request - State: closed - Opened by dependabot[bot] 8 months ago
Labels: dependencies, github_actions

#1448 - Add missing /etc/maven sandbox exception

Pull Request - State: closed - Opened by cd-work 8 months ago

#1447 - Add missing mvn exceptions

Pull Request - State: closed - Opened by cd-work 8 months ago

#1446 - Bump dependencies

Pull Request - State: closed - Opened by phylum-bot 8 months ago

#1445 - Allow execution for apt-installed `maven`

Pull Request - State: closed - Opened by maxrake 8 months ago

#1444 - Bump to v6.6.0

Pull Request - State: closed - Opened by maxrake 8 months ago

#1443 - Allow execute for maven for lockfile generation

Pull Request - State: closed - Opened by kylewillmon 8 months ago

#1442 - Update project management endpoints

Pull Request - State: closed - Opened by cd-work 8 months ago - 4 comments

#1440 - Add PNPM lockfile version 5 support

Pull Request - State: closed - Opened by cd-work 8 months ago

#1439 - Command to set default label

Issue - State: closed - Opened by kylewillmon 8 months ago - 1 comment
Labels: enhancement

#1438 - Support pnpm lockfile version 5

Issue - State: closed - Opened by kylewillmon 8 months ago
Labels: enhancement

#725 - 0.x dependencies are never updated

Issue - State: open - Opened by kylewillmon over 2 years ago - 2 comments
Labels: medium priority, task

#483 - Add a `--check-certificate` command line option

Issue - State: closed - Opened by kylewillmon over 2 years ago - 2 comments
Labels: enhancement, low priority

#480 - `ignore_certs` is plural but `--no-check-certificate` is singular

Issue - State: closed - Opened by kylewillmon over 2 years ago
Labels: enhancement, low priority

#351 - `phylum package` returns results for nonexistent packages

Issue - State: open - Opened by kylewillmon almost 3 years ago - 14 comments
Labels: bug, medium priority

#100 - Normalize ranges for thresholds and scores

Issue - State: closed - Opened by louislang over 3 years ago
Labels: enhancement, medium complexity, low complexity

#99 - Add additional help text during installation

Issue - State: closed - Opened by louislang over 3 years ago
Labels: enhancement, medium priority, documentation, low complexity

#98 - Log scale for histogram output

Issue - State: closed - Opened by louislang over 3 years ago
Labels: enhancement, medium priority, low priority

#97 - Reorganize the binary source file, splitting the file up into smaller files

Pull Request - State: closed - Opened by DanielJoyce over 3 years ago - 1 comment

#96 - Bump version to 1.1.2

Pull Request - State: closed - Opened by louislang over 3 years ago

#95 - Fix deserialization bug and confusing shorthands

Pull Request - State: closed - Opened by louislang over 3 years ago
Labels: bug, high priority

#94 - python manifest parser fails to recognize .egg dependencies in nonstandard locations

Issue - State: closed - Opened by peterjmorgan over 3 years ago - 1 comment
Labels: bug, medium priority

#93 - Add tab completion for zsh / fish

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#92 - Use proper name during update

Pull Request - State: closed - Opened by louislang over 3 years ago

#91 - Bump version

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#90 - Fix update issue for tmpfs

Pull Request - State: closed - Opened by louislang over 3 years ago
Labels: bug

#89 - Update mechanism fails on tmpfs

Issue - State: closed - Opened by louislang over 3 years ago
Labels: bug, medium priority, low complexity

#88 - Updates for 1.1.0 tag

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#87 - Bump version

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#86 - Update the linux builder image

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#85 - Remove old utility scripts

Pull Request - State: closed - Opened by louislang over 3 years ago

#84 - Move the minisign files up one level

Pull Request - State: closed - Opened by louislang over 3 years ago

#83 - Add missing environment variables for file collection

Pull Request - State: closed - Opened by louislang over 3 years ago

#82 - Add missing minisign install to CI pipeline

Pull Request - State: closed - Opened by louislang over 3 years ago

#81 - Update the cli yaml for latest clap version

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#80 - Improve update mechanism and add signature verification for binary

Pull Request - State: closed - Opened by louislang over 3 years ago

#79 - Update README.md

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#78 - Update README.md

Pull Request - State: closed - Opened by louislang over 3 years ago

#77 - Update README.md

Pull Request - State: closed - Opened by louislang over 3 years ago
Labels: documentation

#76 - Support updating for macOS builds.

Pull Request - State: closed - Opened by louislang over 3 years ago
Labels: bug

#75 - Update fails on macOS

Issue - State: closed - Opened by louislang over 3 years ago
Labels: bug

#74 - Add support for automatically building binary release for macOS

Pull Request - State: closed - Opened by louislang over 3 years ago

#73 - Sort the issues in a given job by severity

Pull Request - State: closed - Opened by louislang over 3 years ago

#72 - Workaround for https://github.com/softprops/action-gh-release/issues/140

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#71 - Eric/minor updates

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#70 - Eric/bump version

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#69 - Updates to support threshold actions and issues templates

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#68 - Add notice if packages are still processing.

Pull Request - State: closed - Opened by louislang over 3 years ago

#67 - Setting thresholds for a new project fails

Issue - State: closed - Opened by eeclfrei over 3 years ago
Labels: bug, medium priority

#66 - Add a flag to allow for re-processing of already processed packages

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#65 - Update README

Pull Request - State: closed - Opened by peterjmorgan over 3 years ago

#64 - Fix path for completions on install, chmod -x binary

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#63 - Allow additional entries before the `GEM` header

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#62 - Make build scripts more location robust

Pull Request - State: closed - Opened by DanielJoyce over 3 years ago

#61 - Incorrect scores and missing impacts on `history` subcommand

Issue - State: closed - Opened by louislang over 3 years ago - 1 comment
Labels: bug, medium priority, low complexity

#60 - Query the remote endpoint when checking auth status

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#59 - Print the update message to stderr instead of stdout

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#58 - ejortega/python parser

Pull Request - State: closed - Opened by ejortega over 3 years ago

#57 - Clean up / minor fixes

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#56 - CLI `--json` option includes update notification stanza that breaks JSON format

Issue - State: closed - Opened by peterjmorgan over 3 years ago - 1 comment
Labels: bug, low priority, low complexity

#55 - Add public-key signature verification to `update` process

Issue - State: closed - Opened by peterjmorgan over 3 years ago
Labels: enhancement, low priority, medium complexity

#54 - `phylum` does not gracefully display error conditions when `analyze` submission is not correctly associated with a project

Issue - State: closed - Opened by peterjmorgan over 3 years ago
Labels: bug, enhancement, low priority, low complexity

#53 - `auth status` incorrectly claims a non-existent user is authenticated

Issue - State: closed - Opened by peterjmorgan over 3 years ago
Labels: bug, medium priority

#52 - Include risk levels for heuristics and vulnerabilities in the response

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#51 - `analyze` subcommand sometimes mis-reports number of dependencies on submission

Issue - State: closed - Opened by peterjmorgan over 3 years ago - 1 comment
Labels: bug, medium priority

#50 - Bugfix for `yarn.lock` parsing

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#49 - `analyze` CLI sometimes fails to parse yarn.lock files

Issue - State: closed - Opened by peterjmorgan over 3 years ago - 2 comments
Labels: bug, high priority

#48 - Include packages with perfect (1.0) scores in the histogram count

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#47 - Include the project name in the display

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#46 - `analyze` Change project ID to project name in header stats block

Issue - State: closed - Opened by peterjmorgan over 3 years ago
Labels: enhancement, medium complexity, low complexity

#45 - `analyze` submission gives confusing results with number of dependencies compared to number of histogram entries

Issue - State: closed - Opened by peterjmorgan over 3 years ago - 1 comment
Labels: bug, high priority

#44 - If a lock file is not recognized by name, attempt to determine the type

Pull Request - State: closed - Opened by eeclfrei over 3 years ago

#43 - `analyze` subcommand: Allow user to specify yarn lock filenames not restricted to `yarn.lock`

Issue - State: closed - Opened by peterjmorgan over 3 years ago - 2 comments
Labels: high priority