feat: package managers supply chain blog draft #41
|
@ -116,8 +116,6 @@ even a full audit of code may not surface all code issues and there are other
|
|||
risks stemming, for example, from the way the code is built, or the runtime
|
||||
environment. The idea is to layer all defense mechanisms available, but admit
|
||||
that not reviewing third party code is a bad idea and that this needs to change.
|
||||
If you believe SAST/monitoring will save you, I challenge you to give our team
|
||||
access to add code to your codebase and see what happens.
|
||||
|
||||
## Summary
|
||||
|
||||
|
|
Loading…
Reference in New Issue