| 1 | //! What g1t looks for in a repository, kept apart from any service so it |
| 2 | //! can be tested on its own and shared: secrets in what is pushed |
| 3 | //! ([`secrets`], [`protection`], read out of git packs by [`pack`], and the |
| 4 | //! formats people define themselves, [`custom`], with [`validity`] checks |
| 5 | //! with their issuers), known vulnerabilities in what a project depends on |
| 6 | //! ([`lockfiles`], [`osv`], ordered by [`version`]), its dependency graph |
| 7 | //! ([`graph`], exported as an SPDX document by [`sbom`], compared across a |
| 8 | //! pull request by [`review`]), and code scanning results ([`sarif`]). |
| 9 | |
| 10 | pub mod custom; |
| 11 | pub mod graph; |
| 12 | pub mod lockfiles; |
| 13 | pub mod osv; |
| 14 | pub mod pack; |
| 15 | pub mod protection; |
| 16 | pub mod review; |
| 17 | pub mod sarif; |
| 18 | pub mod sbom; |
| 19 | pub mod secrets; |
| 20 | pub mod validity; |
| 21 | pub mod version; |