You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Currently, maven-lockfile validation gives the same warning when,
A package download has been tampered with
A package version has changed
As suggested by Rhys, a user might want to be protected against tampered packages rather than legitimate version updates. So, we can have different warnings for these cases, to make it clear.
The text was updated successfully, but these errors were encountered:
Currently, maven-lockfile validation gives the same warning when,
As suggested by Rhys, a user might want to be protected against tampered packages rather than legitimate version updates. So, we can have different warnings for these cases, to make it clear.
The text was updated successfully, but these errors were encountered: