Comments (2)
I'm going to turn off the dependabot integration and I'll give them feedback that we should be able to ignore certain gems, such as the identity-proofer-gem, because we don't want to give access to it.
from identity-idp.
Unfortunately Dependabot needs to be able to resolve your Gemfile in order to create PRs for you - we check resolvability of any new versions in the context of all your existing dependencies.
Totally understand that you don't want to make the identity-proofer-gem open source. Is there a reason you don't want to give the Dependabot app access, though? Happy to provide you with some details of how we handle security for private repos we have access to, if that's the concern.
from identity-idp.
Related Issues (20)
- Update dependencies in `@18f/identity-stylelint-config` to support stylelint v16 HOT 3
- c099c4b9756d116f5fb08bc588d49a43a6c6176c HOT 1
- Most users w/.gov email addresses can't have PIV cards and shouldn't be prompted to add one HOT 2
- token endpoint needs time tolerance for client_assertion iat claim HOT 6
- FIDO/WebAuthn regression on Safari HOT 3
- API to be able to use it as a Login option for websites HOT 1
- Platofrm authenticators (TouchID/FaceID and Windows Hello) not suported HOT 2
- Deprecating `clipboard-polyfill` HOT 3
- OIDC tests use incorrect PKCE code_challenge computation
- Requesting query string for 'signup page' HOT 2
- By "same question", I meant whether we should be checking for SMS in this condition.
- Authentication Context Reference (ACR) implementation does not follow standard practices HOT 1
- Personal key sign-in message does not correctly substitute app name HOT 3
- Typo: Lettter
- FIDO2 enrollment fails in Firefox because AuthenticatorAttestationResponse.getTransports() is not supported HOT 3
- Missing option to add Face / Touch ID (WebAuthn passkey) logins HOT 3
- Incorrect CSP prevents redirect from OIDC logout confirmation page HOT 2
- For some apps, logout fails if user has logged in with another browser HOT 15
- Adding a passkey fails when using 1password's browser extension on Linux HOT 10
- Unable to log into my Trusted Traveler Program Account HOT 2
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from identity-idp.