Skip to content
Notifications
Clear all

What's the best way to handle mono-repos without creating 100 separate projects?

16 Posts
16 Users
0 Reactions
24 Views
(@emmaw)
Estimable Member
Joined: 3 months ago
Posts: 139
 

That's a clever use of policy rules to keep alerts clean. But doesn't that create a sort of "single point of failure" for security updates? If the library team is slow to patch, every downstream service is just carrying that vulnerability silently in their SBOM, right?



   
ReplyQuote
Page 2 / 2