Security Products community contributions merge request report - 2026-02-09

Hi @amarpatel, @rvider, @mikeeddington, @nilieskou, @dabeles, @efeller

Recently opened community merge requests

These merge requests meet the following criteria:

  • Open
  • Created within the last 7 days
  • Author not in the gitlab-org group

We'd like to ask you to determine whether:

  • The MR is ready or further changes are required
  • The MR should be assigned to a reviewer
  • The MR should be closed down
  • gitlab-org/security-products/analyzers/dependency-scanning!446 (merged) Fix: npm alias process missing Category:Software Composition Analysis, Community contribution, automation:ml, backend, bugfunctional, groupcomposition analysis, typebug, workflowready for review
  • gitlab-org/security-products/oxeye/product/oxeye-rulez!1388 Draft: benchmarking OWASP VulnerableApp 1st contribution, Category:SAST, Community contribution, SASTRuleset, devopsapplication security testing, featureenhancement, groupvulnerability research, sectionsec, typefeature
  • gitlab-org/security-products/analyzers/container-scanning!3273 Use of TRIVY_CACHE_DIR as env variable 1st contribution, Community contribution, devopsapplication security testing, groupcomposition analysis, linked-issue, sectionsec, typebug, workflowin dev

Old Community contribution merge requests

These merge requests meet the following criteria:

  • Open
  • Labelled Community contribution and not labelled coach will finish
  • Created more than 2 months ago

We'd like to ask you to determine whether:

  • The MR is ready or further changes are required
  • The MR should be taken over by the team
  • The MR should be closed down
  • gitlab-org/security-products/analyzers/container-scanning!3257 (closed) Update trivy to version 0.68.1 Category:Container Scanning, Community contribution, automation:author-reminded, backend, devopsapplication security testing, groupcomposition analysis, idle, maintenancedependency, sectionsec, typemaintenance, workflowin dev

For the Merge Requests triaged please check off the box in front of the given MR.

Thanks for your help!

This report is generated by this triage-ops policy.

Assignee Loading
Time tracking Loading