Am 2022-12-16 um 18:02 schrieb Aldrin Leal:
Hello,

Just a question I'd like to confirm with you guys: How "safe" is to run
`dependency:tree` on a given arbitrary pom?

I mean, whats the likelihood of that pom.xml triggering some "unsafe" code?

And how would you do this in (listing all the required runtime jar files
for a given project) the most secure way if you were given this task?

Safety and security are two different things. What are you striving for?


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to