issues Search Results · language:Edge language:Python language:C# language:Java language:Python language:HTML language:HTML
Filter by
48.4M results
Hi,
My name is Omri, and I am a third-year Computer Science student.
As part of a university course called “Programming Research Algorithms”, I need to implement a research algorithm and
integrate it ...
Summary
Parse direct npm dependencies from package.json and add them to the dependency inventory artifact.
Why this matters
The npm ecosystem commonly expresses runtime, development, optional, and peer ...
area:dependencies
contributor-ready
difficulty:intermediate
ecosystem:npm
enhancement
help wanted
needs-tests
phase:v0.3
priority:P1
size:M
static-analysis
type:feature
Summary
Parse repository NuGet.config files and record package source information statically, without contacting any package
source.
Why this matters
Package source configuration is needed for later ...
area:dependencies
area:security
contributor-ready
difficulty:intermediate
ecosystem:nuget
enhancement
help wanted
needs-tests
phase:v0.3
priority:P2
size:M
static-analysis
type:feature
type:security
Summary
Add NuGet findings for direct dependencies that use floating/unpinned versions or prerelease versions.
Why this matters
Floating and prerelease dependency versions can reduce reproducibility ...
area:dependencies
area:security
contributor-ready
difficulty:intermediate
ecosystem:nuget
enhancement
help wanted
needs-tests
phase:v0.3
priority:P1
size:M
static-analysis
type:feature
type:security
Summary
Resolve NuGet versions from Directory.Packages.props so projects using Central Package Management appear correctly in
dependency inventory.
Why this matters
Many modern .NET repositories omit ...
area:dependencies
contributor-ready
difficulty:intermediate
ecosystem:nuget
enhancement
help wanted
needs-tests
phase:v0.3
priority:P1
size:M
static-analysis
type:feature
Summary
Parse direct NuGet PackageReference entries from .csproj files and add them to the dependency inventory artifact.
Why this matters
RepoTrustDoctor needs package-level dependency data before ...
area:dependencies
contributor-ready
difficulty:intermediate
ecosystem:nuget
enhancement
help wanted
needs-tests
phase:v0.3
priority:P1
size:M
static-analysis
type:feature
Summary
Create a small synthetic fixture layout for dependency analyzer tests and document how future contributors should add
package manifest fixtures.
Why this matters
Dependency analyzer tests will ...
area:dependencies
area:docs
area:testing
contributor-ready
difficulty:beginner
documentation
enhancement
good first issue
help wanted
phase:v0.3
priority:P2
size:S
type:docs
type:tests
Summary
Make the existing dependency inventory analyzer emit a structured DependencyInventoryArtifact while preserving all
current findings and report output.
Why this matters
The current analyzer already ...
area:dependencies
contributor-ready
difficulty:intermediate
enhancement
help wanted
needs-tests
phase:v0.3
priority:P1
size:M
static-analysis
type:feature
vemir.zip

Learn how you can use GitHub Issues to plan and track your work.
Save views for sprints, backlogs, teams, or releases. Rank, sort, and filter issues to suit the occasion. The possibilities are endless.Learn more about GitHub IssuesProTip! Restrict your search to the title by using the in:title qualifier.