Comments (7)
@kumudhanc we created the following PR to improve the logs of install dependencies failures.
from frogbot.
This is the frogbot GitHub action params
from frogbot.
@kumudhanc,
From the log snippet you shared, it looks like Frogbot fails when attempting to run "npm i" on the source code. Does "npm i" rum successfully when you try running it on the source code? In case it does, could it be that it fails running on the source code of the specific pull request being scanned?
Please let us know.
from frogbot.
it went through nicely now, Thanks @eyalbe4 . One more query: I have multiple package.json files, one in the root dir and others inside individual packages dir inside root. It seems the frogbot just scans one path. How can we scan multiple package.json directories.
from frogbot.
@kumudhanc,
Happy to hear it works.
We are planning to make Frogbot search for all descriptor files (package.json files in the case of npm) in all directories. We're planning to introduce in the near future.
from frogbot.
@eyalbe4 even if we can iterate through JF_WORKING_DIR where we can provide directories to scan as a list. That would be great.
from frogbot.
@kumudhanc,
We may need to also support the option of different commands (for example, commands with different npm flags) for each of the working directories.
from frogbot.
Related Issues (20)
- Incorrect request made to Bitbucket Server API HOT 2
- frogbot scan-pull-request fails HOT 4
- Regression for "scan-and-fix-repos" in Azure DevOps server since version 2.11.5 HOT 3
- frogbot scan-pull-requests is scanning all the active pull requests but i wanted to scan only the based on the source branch and buildid is it possible to do that HOT 2
- frogbot scan pull request issue in Azure devops HOT 32
- Please add instructions for teamcity and automatic PR creation in bitbucket server
- Enable download of Maven Gav Reader using Gitlab virtual repository HOT 4
- avoid frogbot from overwriting the comment section as part of every scan HOT 19
- Fix for issue "Fix GoSec issues (#506)" broke the maven gav reader HOT 3
- Dependent project file was not found HOT 1
- Can't see results in the Code Scanning Alerts View (Github) HOT 13
- 'Found invalid token' when using access token generated from jfrogcli HOT 1
- I'm running Enterprise Plus, why does it says "isn't enabled on your system" HOT 2
- JF_INCLUDE_ALL_VULNERABILITIES: TRUE it is not displaying the vulnerabilities . Instead it always prints that the PR has no issues HOT 5
- Support MAVEN_ARGS in frogbot
- FrogBot: A title for comment is required. When there are too many builds in PR, The comments from xray scan are confusing HOT 18
- what to do if we have 2 dotnet .sln files in same directory HOT 7
- Add a JF_PLUGINS_REPO to complement JF_DEPS_REPO for Maven builds HOT 2
- How to get PR's created in Azure DevOps HOT 4
- Gitlab SAAS 401 issues HOT 3
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google ❤️ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from frogbot.