Add support for Bun's package manager#257
Open
lohmander wants to merge 18 commits intoDataDog:mainfrom
Open
Conversation
- Add ECOSYSTEM.Bun to PackageAgeVerifier supported ecosystems - Add ECOSYSTEM.Bun to OsvVerifier supported ecosystems - Add case for ECOSYSTEM.Bun in ecosystem match statements - Map Bun packages to 'npm' ecosystem for OSV API queries (Bun uses npm registry) - Add ECOSYSTEM.Bun to DatadogMaliciousPackagesVerifier supported ecosystems - Add graceful error handling for missing Bun manifest in DD verifier This ensures Bun packages are properly verified and blocked when malicious.
Collaborator
|
Hi @lohmander , Thanks for the contribution to SCFW! This looks good on a first-pass review, and I'll have time to get into the details this week. In the event that I see things to be added or changed, would you prefer to handle those items yourself or should I just go ahead and push to your branch? |
Author
Great! Feel free to add/edit anything that needs to be changed, or ping me if you'd prefer I fix it. |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Implements support for Bun's package manager. Issue #256