project-kb icon indicating copy to clipboard operation
project-kb copied to clipboard

export to Steady: the script does not delete local clones of repositories

Open sumeetpatil opened this issue 4 years ago • 1 comments

The temporary cloned repositories take a lot of space. Delete it as soon it is consumed by KB-Importer https://github.com/SAP/project-kb/blob/master/kaybee/internal/tasks/data/default_config.yaml

sumeetpatil avatar Oct 05 '20 18:10 sumeetpatil

If we deleted the clone after each vulnerability is processed, as a result we would have to clone multiple times the repositories for which he have multiple vulnerabilities.

A better solution would be to export vulnerabilities grouping them by repository, so that we can work on all those that need a certain repository and then safely delete the clone.

PROBLEM: the repository may not be unique for a given vulnerability.

copernico avatar Oct 07 '20 08:10 copernico