Welcome to the Inedo Forums! Check out the Forums Guide for help getting started.

If you are experiencing any issues with the forum software, please visit the Contact Form on our website and let us know!

Proget as a proxy for nuget and npm : vulnerability scan



  • Hi,
    I want to use proget for our own packages (nuget and npm), but also as a "proxy" for nuget.org and https://www.npmjs.com/.

    I understand I can do that with fedd and connector.
    My question is :

    If I do that and I'm trying to get a new package from nuget.org for example, does this new package will be scanned and eventually block by the whitelist service ?

    thanks

    Product: ProGet
    Version: 5.0.10



  • yes, after subscribing to one of our vulnerability providers like Sona OSSIndex or Whitesource (more coming later).



Inedo Website HomeSupport HomeCode of ConductForums GuideDocumentation