Discover methods for disclosing security vulnerabilities to a project privately.
Project description
Disclosure Check
A tool for detecting disclosure mechanisms for open source projects
Usage
Download the latest .tar.gz file from the releases page.
$ pip install disclosurecheck-VERSION.tar.gz
$ disclosurecheck --help
usage: OpenSSF Vulnerability Disclosure Mechanism Detector [-h] [--verbose] [--json] package_url
positional arguments:
package_url Package URL for the project/package you want to analyze.
options:
-h, --help show this help message and exit
--verbose Show extra logging.
--json Output as JSON.
Project details
Release history Release notifications | RSS feed
Download files
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
Source Distribution
disclosurecheck-0.0.6.tar.gz
(27.6 kB
view hashes)
Built Distribution
Close
Hashes for disclosurecheck-0.0.6-py3-none-any.whl
Algorithm | Hash digest | |
---|---|---|
SHA256 | 19f71b3b015f27ac71ec1802b593fc93cb41bae85738dc1d21917035fced2f79 |
|
MD5 | 1139ceafac099a1c373bc6c6ccc77708 |
|
BLAKE2b-256 | 2442066d8adafe8fcc678e8a6a6f337fd3ea3dceaf431a788e2f1960af26be55 |