Skip to content

Commit 6e65b26

Browse files
committed
ignore vulnerabilities on dev dependencies
1 parent d6ae4c8 commit 6e65b26

File tree

1 file changed

+4
-2
lines changed

1 file changed

+4
-2
lines changed

.safety-policy.yml

Lines changed: 4 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,9 @@ security: # configuration for the `safety check` command
88
ignore-cvss-unknown-severity: False # True or False. We recommend you set this to False.
99
ignore-vulnerabilities: # Here you can list multiple specific vulnerabilities you want to ignore (optionally for a time period)
1010
# We recommend making use of the optional `reason` and `expires` keys for each vulnerability that you ignore.
11-
45185:
12-
reason: dev dependency, remedy will require dropping support for python 3.6
11+
53269:
12+
reason: dev dependency
1313
#expires: '2022-10-21' # datetime string - date this ignore will expire, best practice to use this variable
14+
51499:
15+
reason: dev dependency
1416
continue-on-vulnerability-error: False # Suppress non-zero exit codes when vulnerabilities are found. Enable this in pipelines and CI/CD processes if you want to pass builds that have vulnerabilities. We recommend you set this to False.

0 commit comments

Comments
 (0)