遵循以下最佳实践的项目将能够自愿的自我认证,并显示他们已经实现了核心基础设施计划(OpenSSF)徽章。 显示详细资料
[](https://www.bestpractices.dev/projects/8960)
<a href="https://www.bestpractices.dev/projects/8960"><img src="https://www.bestpractices.dev/projects/8960/badge"></a>
Create CycloneDX Software Bill of Materials (SBOM) from Node.js Yarn projects.
Non-trivial contribution file in repository: https://github.com/CycloneDX/cyclonedx-node-yarn/blob/1.0-dev/CONTRIBUTING.md.
issue tracker: https://github.com/CycloneDX/cyclonedx-node-yarn/issues
Each feature added by a PR as tracked to be tested and covered. Quality gate enforced by codacy: https://app.codacy.com/gh/CycloneDX/cyclonedx-node-yarn/coverage/dashboard If policy is not met, an automatism will annotate the respective pullrequest
all warning are treated as critical and shall fail the build
done by codacy https://app.codacy.com/gh/CycloneDX/cyclonedx-node-yarn/dashboard done by CodeQL
This is JavaScript. It is run in provided runtime environments.
后退