3
0
Fork 0

commit by to_remotes 2024-02-06 12:28:02 +0100 from vmdevhw

main
Holger Wasem 2024-02-06 12:28:02 +01:00
parent c611dd4a7b
commit d784f289b8
1 changed files with 3 additions and 1 deletions

View File

@ -12,8 +12,10 @@ By **audit** we mean checking for vulnerabilities.
**git_tag**: The tag of the application/image/audit at the time audit **git_tag**: The tag of the application/image/audit at the time audit
You will notice that bundle-audit-time.txt is changed whenever an audit is being done, while report.txt is only updated when actually there is something to be reported.
# What is being checked and how? # What is being checked and how?
The application being checked is Xalimo Teamplay which is a Rails application provided by a docker image. The application being checked is Xalimo Teamplay which is a Rails application provided by a docker image.
Basis for the check is the set of used packages (called Gems). These are being tested against a constantantly updated database of know vulnerabilities. Basis for the check is the set of used packages (called Gems). These are being tested against a constantantly updated database of know vulnerabilities.