dep-scan
dep-scan copied to clipboard
Support for suppression
The tool should allow suppression of false positives. We need:
- A way of defining the suppressions. The xml format used by dependency-check is not suitable for the modern era. We need to think of a better yaml or toml format.
- A way of representing suppressions in the report. grafeas currently doesn't support this metadata