Skip to content

Dependency Scanning for one new dot-Net based on research

Problem to solve

Based on the outcome of - #217374 (closed)

Look at which way should we add Dependency Scanning for .NET (NuGET?) to Gemnasium.

Proposal

Add Dependency Scanning support for NuGET packages.

What does success look like, and how can we measure that?

NuGET packages (via nuget.org) should be scanned for known vulnerabilities.

Edited by Nicole Schwartz