16.2 Secure:Composition Analysis Planning Issue
General info
For this milestone we'll focus our efforts on trying to complete the MVC of Continuous Vulnerability Scans for Dependency Scanning. We will also continue to address the remaining issues with the new License Scanner and get to parity with the deprecated scanner.
This milestone 16.2 starts on 2023-06-18 and ends on 2023-07-17.
Reaction Rotation
- Security: 15% @adamcohen + @atiwari71
- Maintainership: 15% @smtan
- Support: 15% @fcatteau + @nilieskou
Priorities
- Dependency Scanning: CVS Trigger scans on Advis... (&9534 - closed)
- Functional parity between new and old license s... (&9994 - closed)
- Show CI/CD-pipeline-based vulnerability results... (&9004)
- High Demand/Value Container Scanning Improvements (&9870)
- CycloneDX SBOM export for a CI pipeline (#333463 - closed)
Work type classification
- typefeature: 27/40 - issues
- typebug: 15/18 - issues
- typemaintenance: 8/10 - issues
- typeignore: 2/0 - issues
- others: 0/0 - issues
|
|
Planned capacity
-
backend => ~90%
- Adam: 85%
- Aditya: 85%
- Fabien: 50%
- Igor: 100%
- Nick: 100%
- Oscar: 100%
- Philip: 100%
- Shao: 85%
- Tetiana: 100%
-
frontend => 100%
- Fernando: 100%
- documentation, Russell: 15%
- Quality, Will: 95%
- Engineering Manager, Olivier: 80% (PTO TBC)
- Product Manager, Sara: %
Edited by Olivier Gonzalez