Awesome
<!-- Sonatype Nexus (TM) Open Source Version Copyright (c) 2020-present Sonatype, Inc. All rights reserved. Includes the third-party code listed at http://links.sonatype.com/products/nexus/oss/attributions. Sonatype Nexus (TM) Professional Version is available from Sonatype, Inc. "Sonatype" and "Sonatype Nexus" are trademarks of Sonatype, Inc. Apache Maven is a trademark of the Apache Software Foundation. M2eclipse is a trademark of the Eclipse Foundation. All other trademarks are the property of their respective owners. -->circleci-nancy-orb
Provides a CircleCI Orb to use nancy to check for vulnerabilities in your Golang dependencies.
Click the orb version
badge above for usage examples and documentation.
An example project that uses this orb is: nancy-circleci-orb-test
Orb Development Process
This Orb was built following the format defined in the Orb Starter Kit. More details are available there.
The Fine Print
It is worth noting that this is NOT SUPPORTED by Sonatype, and is a contribution of ours to the open source community (read: you!)
Remember:
- Use this contribution at the risk tolerance that you have
- Do NOT file Sonatype support tickets related to
nancy
support in regard to this project - DO file issues here on GitHub, so that the community can pitch in
Phew, that was easier than I thought. Last but not least of all:
Getting help
Looking to contribute to our code but need some help? There's a few ways to get information:
- Create Issues in this github project.
- See the
community: CircleCI Discuss
badge at the top of this page.