Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Better writing on NVD API key for DependencyCheck #589

Open
2 tasks
binkley opened this issue Jul 22, 2024 · 0 comments
Open
2 tasks

Better writing on NVD API key for DependencyCheck #589

binkley opened this issue Jul 22, 2024 · 0 comments
Assignees
Labels
documentation Improvements or additions to documentation security Shifting security left

Comments

@binkley
Copy link
Owner

binkley commented Jul 22, 2024

While eating our own dogfood, I'm using the directions in the wiki to add NVD API key when speeding up builds.
I'm using https://github.com/binkley/kotlin-magic-bus as a guinea pig to validate following what we say about "Shifting security left", and providing quickly usable instructions.

Tasks

  • Better copy/paste instructions for source config files
  • Better discussion on tooling to export unshared secrets to builds, including CI
@binkley binkley added the security Shifting security left label Jul 22, 2024
@binkley binkley self-assigned this Jul 22, 2024
@binkley binkley added the documentation Improvements or additions to documentation label Jul 22, 2024
@binkley binkley removed their assignment Jul 23, 2024
@binkley binkley moved this to Analysis in @binkley's Modern Build Jul 23, 2024
@binkley binkley self-assigned this Jul 23, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
documentation Improvements or additions to documentation security Shifting security left
Projects
Status: Analysis
Development

No branches or pull requests

1 participant