vulnerablecode
vulnerablecode copied to clipboard
Review how we create PURL namespaces in the GitHhub importer
The code at https://github.com/nexB/vulnerablecode/blob/3b3ea6d3e3a64a8504733c9fe5298f8d4734993b/vulnerabilities/importers/github.py#L116 needs some love.
- npm has a namespace.
- we should avoid if possible to single out a list of package type
- golang may have a namespace