nix-security-tracker
nix-security-tracker copied to clipboard
Web service for managing information on vulnerabilities in software distributed through Nixpkgs
As a security team member, when inspecting a pre-triaged issue, I want to be able to dismiss the draft. Since this will be following a more detailed analysis, I want...
As a security team member, I want to refine a pre-triaged security record draft by adding or removing CVEs. Depends on: - #208 - #177
As a user of the tracker I want to be able to inspect the history of activity on a security issue. For example: - X confirmed the status and put...
As a security team member, I want to have an overview of all pre-triaged issues, so I can pick one of them for refinement. Depends on: - #206
As a security team member, I want to refine a pre-triaged security record draft by adding or removing derivations. Depends on: - #208 - #215
As a user of the security tracker, I want to be able to search for particular derivations.
As a security team member, when reviewing the version constraints in a match suggestion, I want to be able to asses wether the constraints are indicating a security issue. The...
As a member of the security team or a package maintainer, I want to be able to search for a particular CVE. - [ ] Show matching packages if a...
As a security team member, I want to be able to filter suggestions for matches in the triage view. For this, I need to specify and combine filters on various...
As security team member or package maintainer, I don't want to deal with security issues that have been resolved. They should be archived automatically once their corresponding GitHub issue is...