devguard
devguard copied to clipboard
Integration of OSS Foundation's Malicious Package Database
https://github.com/ossf/malicious-packages
We need to evaluate how much time it takes to integrate this database. I think we just need to store the purls
Bump - still a thing, given recent supply chain news ;)