Skip to content
This repository was archived by the owner on Sep 11, 2025. It is now read-only.

Blog post: The real weakest link in software supply chain security#5205

Merged
rebeccadee merged 5 commits intomainfrom
third-party-vulns-post
Mar 21, 2022
Merged

Blog post: The real weakest link in software supply chain security#5205
rebeccadee merged 5 commits intomainfrom
third-party-vulns-post

Conversation

@rebeccadee
Copy link
Contributor

@rebeccadee rebeccadee commented Mar 16, 2022

@rebeccadee rebeccadee self-assigned this Mar 16, 2022
@sourcegraph-bot
Copy link
Contributor

sourcegraph-bot commented Mar 16, 2022

Notifying subscribers in CODENOTIFY files for diff 4fa93f2...0fc8a08.

Notify File(s)
@sourcegraph/marketing blogposts/2022/third-party-vulnerabilties-process.md
website/.vscode/settings.json
website/.vscode/tasks.json
website/tsconfig.json

@rebeccadee rebeccadee marked this pull request as draft March 16, 2022 12:26
@rebeccadee rebeccadee requested a review from nickmyyz March 16, 2022 17:54
@rebeccadee
Copy link
Contributor Author

@nickmyyz I will pop in tomorrow to add the images and resolve outstanding todos, but would be super helpful to get an approving review from you in the meantime so I'm not blocked from merging tomorrow AM! 🙏 TY!

nickmyyz
nickmyyz previously approved these changes Mar 16, 2022
Copy link
Contributor

@nickmyyz nickmyyz left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

I read it over again and still think it's ready to go (minus the to-dos of course)! The only thing I might take a look at is whether you could add more paragraph breaks here and there (the intro paragraph for example is a bit long) but I wouldn't consider that blocking.

@rebeccadee
Copy link
Contributor Author

Thank you so much @nickmyyz!

Also looping in @andreeleuterio just as an FYI – this is almost ready to go and I plan to publish tomorrow 🎉

@rebeccadee rebeccadee marked this pull request as ready for review March 17, 2022 10:33
@rebeccadee
Copy link
Contributor Author

@nickmyyz / @andreeleuterio I didn't realise that making further changes to the PR would invalidate the previous approval 🙄 Would one of you be able to approve and merge today please? 🙏 I understand why we want to enforce reviews before merging but this is proving to be a bit of a pain!!

@andreeleuterio andreeleuterio self-requested a review March 17, 2022 13:32
andreeleuterio
andreeleuterio previously approved these changes Mar 17, 2022
@andreeleuterio
Copy link
Member

@rebeccadee I got you

@rebeccadee
Copy link
Contributor Author

@andreeleuterio Thanks for approving! I meant for this to be published as well, but seeing as it's not live yet I added a mention of the node-ipc attack. I just want to run the post by our comms team because of the relationship to current events. Stay tuned!

@rebeccadee rebeccadee requested a review from amieroth March 21, 2022 10:21
@rebeccadee rebeccadee merged commit bc913ec into main Mar 21, 2022
@rebeccadee rebeccadee deleted the third-party-vulns-post branch March 21, 2022 16:10
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants

Comments