Skip to content
This repository has been archived by the owner on Nov 28, 2024. It is now read-only.

Remove blackduck PR scans #64

Closed
wants to merge 3 commits into from
Closed

Remove blackduck PR scans #64

wants to merge 3 commits into from

Conversation

morri-son
Copy link
Contributor

Description

Please include a summary of the changes and the related issue. Please also include relevant motivation and context. List any dependencies that are required for this change.

What type of PR is this? (check all applicable)

  • 🍕 Feature
  • 🐛 Bug Fix
  • 📝 Documentation Update
  • 🎨 Style
  • 🧑‍💻 Code Refactor
  • 🔥 Performance Improvements
  • ✅ Test
  • 🤖 Build
  • 🔁 CI
  • 📦 Chore (Release)
  • ⏩ Revert

Related Tickets & Documents

  • Related Issue # (issue)
  • Closes # (issue)
  • Fixes # (issue)

Remove if not applicable

Screenshots

Added tests?

  • 👍 yes
  • 🙅 no, because they aren't needed
  • 🙋 no, because I need help
  • Separate ticket for tests # (issue/pr)

Please describe the tests that you ran to verify your changes. Provide instructions so we can reproduce. Please also list any relevant details for your test configuration

Added to documentation?

  • 📜 README.md
  • 🙅 no documentation needed

Checklist:

  • My code follows the style guidelines of this project
  • I have performed a self-review of my code
  • I have commented my code, particularly in hard-to-understand areas
  • I have made corresponding changes to the documentation
  • My changes generate no new warnings
  • I have added tests that prove my fix is effective or that my feature works
  • New and existing unit tests pass locally with my changes
  • Any dependent changes have been merged and published in downstream modules

@morri-son morri-son requested a review from Skarlso October 17, 2023 08:51
@github-actions
Copy link

❌ Black Duck - Found dependencies violating policy!

Policies Violated Dependency License(s) Vulnerabilities Short Term Recommended Upgrade Long Term Recommended Upgrade
OutdatedFOSSLibraries github.com/google/go-containerregistry v0.15.2 Apache License 2.0 v0.16.1 (0 known vulnerabilities) v0.16.1 (0 known vulnerabilities)
OutdatedFOSSLibraries golang-github-docker-go-connections-dev 0.4.0 Apache License 2.0
OutdatedFOSSLibraries github.com/alibabacloud-go/darabonba-openapi v0.1.18 Apache License 2.0 v0.2.1 (0 known vulnerabilities) v2.0.4 (0 known vulnerabilities)
OutdatedFOSSLibraries go-autorest autorest/date/v0.3.0 Apache License 2.0 autorest/v0.11.29 (0 known vulnerabilities) 14.2.0+git20220726.711dde1 (0 known vulnerabilities)
OutdatedFOSSLibraries sigs.k8s.io/yaml v1.3.0 Apache License 2.0
OutdatedFOSSLibraries docker-org 20190806-snapshot-e31b211e Apache License 2.0 esgz-compression.20201218-1750 (0 known vulnerabilities)
OutdatedFOSSLibraries go-inf-inf v0.9.1 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries jmespath-go-jmespath v0.4.0 Apache License 2.0 internal/testify/v1.5.1 (0 known vulnerabilities)
OutdatedFOSSLibraries docker-go-units v0.5.0 Apache License 2.0
OutdatedFOSSLibraries FlatBuffers 22.9.29 Apache License 2.0 22.12.6 (0 known vulnerabilities) 2015.12.22.1 (0 known vulnerabilities)
OutdatedFOSSLibraries mitchellh-go-homedir v1.1.0 MIT License 1.1.0-r0 (0 known vulnerabilities) 1.1.0-r0 (0 known vulnerabilities)
OutdatedFOSSLibraries valyala/bytebufferpool v1.0.0 MIT License
OutdatedFOSSLibraries miekg/pkcs11 v1.1.1 BSD 3-clause "New" or "Revised" License 4.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries pkg/errors v0.9.1 BSD 2-clause "Simplified" License v0.11.0 (0 known vulnerabilities) 4.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries go-errors-errors v1.4.2 MIT License v1.5.1 (0 known vulnerabilities) v1.5.1 (0 known vulnerabilities)
OutdatedFOSSLibraries diskv v2.0.1 MIT License v3.0.1 (0 known vulnerabilities)
OutdatedFOSSLibraries opentracing-opentracing-go v1.2.0 Apache License 2.0 v4 (0 known vulnerabilities)
OutdatedFOSSLibraries github.com/munnerz/goautoneg 20191010-snapshot-a7dc8b61 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries google-go-querystring v1.1.0 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries evanphx/json-patch v5.6.0 BSD 3-clause "New" or "Revised" License v5.7.0 (0 known vulnerabilities) v5.7.0 (0 known vulnerabilities)
OutdatedFOSSLibraries gregjones/httpcache 20190611-snapshot-901d9072 MIT License 0.0.0-20190611155906-901d90724c79 (0 known vulnerabilities)
OutdatedFOSSLibraries hashicorp-golang-lru v0.5.4 Mozilla Public License 2.0 v0.6.0 (0 known vulnerabilities) arc/v2.0.7 (0 known vulnerabilities)
OutdatedFOSSLibraries go-ansiterm d185dfc1b5a126116ea5a19e148e29d16b4574c9 MIT License 0 (0 known vulnerabilities)
OutdatedFOSSLibraries gorilla/mux v1.8.0 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries go-autorest autorest/azure/cli/v0.4.6 Apache License 2.0 autorest/v0.11.29 (0 known vulnerabilities) 14.2.0+git20220726.711dde1 (0 known vulnerabilities)
OutdatedFOSSLibraries hashicorp-go-cleanhttp v0.5.2 Mozilla Public License 2.0
OutdatedFOSSLibraries mailru/easyjson v0.7.7 MIT License
OutdatedFOSSLibraries phayes/freeport 20220201-snapshot-74d24b5a BSD 3-clause "New" or "Revised" License 1.0.2 (0 known vulnerabilities)
OutdatedFOSSLibraries yaml for Go v2.4.0 Apache License 2.0 v3.0.1 (0 known vulnerabilities)
OutdatedFOSSLibraries pborman-uuid v1.2.1 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries xeipuuv/gojsonschema v1.2.0 Apache License 2.0 master20161231 (0 known vulnerabilities)
OutdatedFOSSLibraries go-jose v2.6.0 Apache License 2.0
OutdatedFOSSLibraries notary v0.7.0 Apache License 2.0 docker-v1.11-3 (0 known vulnerabilities)
OutdatedFOSSLibraries containers/image v5.23.0 Apache License 2.0 v5.28.0 (0 known vulnerabilities) v5.28.0 (0 known vulnerabilities)
OutdatedFOSSLibraries fluxcd/pkg apis/acl/v0.1.0 Apache License 2.0 git/libgit2/v0.6.0 (0 known vulnerabilities) git/libgit2/v0.6.0 (0 known vulnerabilities)
OutdatedFOSSLibraries go-spew v1.1.1 ISC License
OutdatedFOSSLibraries moby/sys sequential/v0.5.0 Apache License 2.0 signal/v0.7.0 (0 known vulnerabilities) signal/v0.7.0 (0 known vulnerabilities)
OutdatedFOSSLibraries modern-go/reflect2 v1.0.2 Apache License 2.0 V2.1.0 (0 known vulnerabilities)
OutdatedFOSSLibraries mitchellh-hashstructure v2.0.2 MIT License
OutdatedFOSSLibraries golang-github-spf13-pflag-dev v1.0.5 BSD 3-clause "New" or "Revised" License 1.0.6~git20210604-d5e0c0615ace (0 known vulnerabilities) 1.0.6~git20210604-d5e0c0615ace (0 known vulnerabilities)
OutdatedFOSSLibraries alibabacloud-go/tea v1.1.18 Apache License 2.0 v1.2.1 (0 known vulnerabilities) v1.2.1 (0 known vulnerabilities)
OutdatedFOSSLibraries evanphx/json-patch v5.6.0 BSD 3-clause "New" or "Revised" License v5.7.0 (0 known vulnerabilities) v5.7.0 (0 known vulnerabilities)
OutdatedFOSSLibraries goccy/go-yaml v1.9.5 MIT License v1.11.2 (0 known vulnerabilities) v1.11.2 (0 known vulnerabilities)
OutdatedFOSSLibraries fluxcd/pkg untar/v0.2.0 Apache License 2.0 git/libgit2/v0.6.0 (0 known vulnerabilities) git/libgit2/v0.6.0 (0 known vulnerabilities)
OutdatedFOSSLibraries go-github v45.2.0 BSD 3-clause "New" or "Revised" License v56.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries jedisct1/go-minisign 20211028-snapshot-1c139d1c MIT License 0.2.4 (0 known vulnerabilities)
OutdatedFOSSLibraries nozzle-throttler 20180816-snapshot-2ea98225 Apache License 2.0 v1.1 (0 known vulnerabilities)
OutdatedFOSSLibraries blang-semver 3.5.1 MIT License v3.8.0 (0 known vulnerabilities) 4.0.0-r0 (0 known vulnerabilities)
OutdatedFOSSLibraries go-chi v4.1.2 MIT License v4.1.3 (0 known vulnerabilities) v5.0.10 (0 known vulnerabilities)
OutdatedFOSSLibraries containers/ocicrypt v1.1.6 Apache License 2.0 v1.1.8 (0 known vulnerabilities) v1.1.8 (0 known vulnerabilities)
OutdatedFOSSLibraries go-autorest logger/v0.2.1 Apache License 2.0 autorest/v0.11.29 (0 known vulnerabilities) 14.2.0+git20220726.711dde1 (0 known vulnerabilities)
OutdatedFOSSLibraries xeipuuv-gojsonpointer 20190904-snapshot-02993c40 Apache License 2.0 0.0~git20190905.02993c4 (0 known vulnerabilities)
OutdatedFOSSLibraries btree v1.1.2 Apache License 2.0
OutdatedFOSSLibraries github.com/alibabacloud-go/openapi-util v0.0.11 Apache License 2.0 v0.1.0 (0 known vulnerabilities) v0.1.0 (0 known vulnerabilities)
OutdatedFOSSLibraries jsoniter-go v1.1.12 MIT License 1.16.0 (0 known vulnerabilities) 1.16.0 (0 known vulnerabilities)
OutdatedFOSSLibraries gogo/protobuf v1.3.2 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries github.com/gomodule/redigo v1.8.2 Apache License 2.0 v1.8.9 (0 known vulnerabilities) v2.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries mitchellh-hashstructure v1.1.0 MIT License v2.0.2 (0 known vulnerabilities)
OutdatedFOSSLibraries golang-github-docker-libtrust-dev 20160708-snapshot-aabc10ec Apache License 2.0 0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries github.com/alibabacloud-go/tea-xml v1.1.2 Apache License 2.0 v1.1.3 (0 known vulnerabilities) v1.1.3 (0 known vulnerabilities)
OutdatedFOSSLibraries google/gnostic v0.6.9 Apache License 2.0 v0.7.0 (0 known vulnerabilities) v0.7.0 (0 known vulnerabilities)
OutdatedFOSSLibraries github.com/moby/locker 1.0.1 Apache License 2.0
OutdatedFOSSLibraries go-logr/stdr v1.2.2 Apache License 2.0
OutdatedFOSSLibraries zeebo/errs v1.3.0 MIT License v2.0.4 (0 known vulnerabilities)
OutdatedFOSSLibraries xeipuuv-gojsonreference 20180127-snapshot-bd5ef7bd Apache License 2.0 0.0~git20150808.0.e02fc20 (0 known vulnerabilities)
OutdatedFOSSLibraries aws/aws-sdk-go-v2 service/ecrpublic/v1.12.0 Apache License 2.0 service/route53/v1.30.1 (0 known vulnerabilities) 20230724 (0 known vulnerabilities)
OutdatedFOSSLibraries docker-go 20160303-snapshot-d30aec9f BSD 3-clause "New" or "Revised" License v1.5.1-1 (0 known vulnerabilities)
OutdatedFOSSLibraries beorn7-perks v1.0.1 MIT License
OutdatedFOSSLibraries pmezard-go-difflib 1.0.0 BSD 3-clause "New" or "Revised" License v1.0.0+gitX-r0 (0 known vulnerabilities) v1.0.0+gitX-r0 (0 known vulnerabilities)
OutdatedFOSSLibraries groupcache 20210331-snapshot-41bb18bf Apache License 2.0 1.56.1 (0 known vulnerabilities)
OutdatedFOSSLibraries filippo.io/edwards25519 v1.0.0 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries yaml for Go v3.0.1 Apache License 2.0
MIT License
OutdatedFOSSLibraries dimchansky/utfbom v1.1.1 Apache License 2.0
OutdatedFOSSLibraries containers/libtrust 20200511-snapshot-9c3a6c22 Apache License 2.0 0.0~git20230121.c1716e8 (0 known vulnerabilities)
OutdatedFOSSLibraries go-toml v1.9.5 MIT License v2.1.0 (0 known vulnerabilities)
OutdatedFOSSLibraries aliyun/credentials-go v1.2.3 Apache License 2.0 v1.3.1 (0 known vulnerabilities) v1.3.1 (0 known vulnerabilities)
OutdatedFOSSLibraries segmentio/ksuid v1.0.4 MIT License
OutdatedFOSSLibraries go-openapi/errors v0.20.3 Apache License 2.0 v0.20.4 (0 known vulnerabilities) v0.20.4 (0 known vulnerabilities)
OutdatedFOSSLibraries go-metrics 20201227-snapshot-cf1acfcd BSD 2-clause "Simplified" License master-efc2659 (0 known vulnerabilities)
OutdatedFOSSLibraries google-shlex 20191202-snapshot-e7afc7fb Apache License 2.0 0.0~git20191202.e7afc7f (0 known vulnerabilities)
OutdatedFOSSLibraries go-autorest tracing/v0.6.0 Apache License 2.0 autorest/v0.11.29 (0 known vulnerabilities) 14.2.0+git20220726.711dde1 (0 known vulnerabilities)
OutdatedFOSSLibraries titanous/rocacheck 20180511-snapshot-afe73141 MIT License
OutdatedFOSSLibraries tjfoc/gmsm v1.3.2 Apache License 2.0 v1.4.1 (0 known vulnerabilities) v2.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries alibabacloud-go/cr-20160607 v1.0.1 Apache License 2.0 v2.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries morikuni/aec v1.0.0 MIT License
OutdatedFOSSLibraries sassoftware/relic v7.2.1 Apache License 2.0 v7.6.1 (0 known vulnerabilities) v7.6.1 (0 known vulnerabilities)
OutdatedFOSSLibraries docker-org v0.7.0 MIT License pre-0.16+2093 (0 known vulnerabilities) 2016-08-12 (0 known vulnerabilities)
OutdatedFOSSLibraries marstr/guid v1.1.0 MIT License
OutdatedFOSSLibraries gobwas-glob 0.2.3 MIT License 0.2.3+git20180208.19c076c (0 known vulnerabilities) 0.2.3+git20180208.19c076c (0 known vulnerabilities)
OutdatedFOSSLibraries josharian/intern v1.0.0 MIT License
[IP Scan] SAP Hosted Cloud - Rapid Scan
OutdatedFOSSLibraries
docker/go-metrics v0.0.1 ❌   Creative Commons Attribution Share Alike 4.0
Apache License 2.0
OutdatedFOSSLibraries hashicorp/hcl v1.0.0 Mozilla Public License 2.0 v1.0.1-vault-5 (0 known vulnerabilities) v2.18.1 (0 known vulnerabilities)
OutdatedFOSSLibraries klauspost-pgzip v1.2.5 Expat License v1.2.6 (0 known vulnerabilities) v����.2.0 (0 known vulnerabilities)
OutdatedFOSSLibraries mitchellh-reflectwalk v1.0.2 MIT License
OutdatedFOSSLibraries oklog/ulid v1.3.1 Apache License 2.0 v2.1.0 (0 known vulnerabilities)
OutdatedFOSSLibraries mitchellh-copystructure v1.2.0 MIT License
OutdatedFOSSLibraries tchap-go-patricia v2.3.1 MIT License
OutdatedFOSSLibraries alibabacloud-go/debug 20190504-snapshot-9472017b Apache License 2.0 v1.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries felixge/httpsnoop v1.0.3 MIT License
OutdatedFOSSLibraries alibabacloud-go/cr-20181201 v1.0.10 Unknown License v2.2.0 (0 known vulnerabilities)
OutdatedFOSSLibraries google-gofuzz v1.2.0 Apache License 2.0
OutdatedFOSSLibraries golang-github-ghodss-yaml-dev 1.0.0 MIT License 1.0.0+git20220118.d8423dc (0 known vulnerabilities) v2 (0 known vulnerabilities)
OutdatedFOSSLibraries monochromegane/go-gitignore 20200625-snapshot-205db1a8 MIT License 0 (0 known vulnerabilities)
OutdatedFOSSLibraries skratchdot-open-golang 20200116-snapshot-eef84239 MIT License 0.0~git20160302.0.75fb7ed (0 known vulnerabilities)
OutdatedFOSSLibraries go-autorest v14.2.0 Apache License 2.0 14.2.0+git20220726.711dde1 (0 known vulnerabilities) 14.2.0+git20220726.711dde1 (0 known vulnerabilities)
OutdatedFOSSLibraries yuin/goldmark v1.4.13 MIT License 1.14.0 (0 known vulnerabilities) 10.11.0 (0 known vulnerabilities)
OutdatedFOSSLibraries google/go-cmp v0.5.9 BSD 3-clause "New" or "Revised" License v0.6.0 (0 known vulnerabilities) 1.30.0 (0 known vulnerabilities)
OutdatedFOSSLibraries go-jose/go-jose v3.0.0 Apache License 2.0
OutdatedFOSSLibraries liggitt/tabwriter 20181228-snapshot-89fcab3d BSD 3-clause "New" or "Revised" License 0 (0 known vulnerabilities)

@Skarlso
Copy link
Contributor

Skarlso commented Oct 17, 2023

@morri-son You didn't remove the check.

@morri-son morri-son closed this Oct 18, 2023
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants