Replies: 1 comment
-
@brishable - do you know why those 2 package's (polyline-miter-util - version 1.0.1, polyline-normals - version 2.0.2) are being flagged? Have you tried reaching out to the creator of those 2 packages? |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Hello,
We use Antv G6 in our product as a dependency. We scan our product and its dependencies for license, security, and operational violations.
G6 was flagged for an operational violation because it is using two components (polyline-miter-util - version 1.0.1, polyline-normals - version 2.0.2). The latest version of these libraries are being used by G6 but unfortunately these versions were released 7 years ago. As a result of very old releases they are flagged as operational violations.
A clean report from the aforementioned scans for license, security, and operational violations is mandatory for our product's release and hence we are getting affected.
We request you to address the use of these old libraries in G6.
Beta Was this translation helpful? Give feedback.
All reactions