Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
When I run automated security checks on a gem I want the alerts to be mostly relevant So that no-one gets confused by unnecessary false positives And I don't get used to ignore warnings The Gemfile.loclk in a gem is only used during development (it is not used when the gem is installed in a project), it is arguably not essential to lock dependencies in development, and having the file causes automatic security scanners to trigger most often that not alerts that are not relevant.
- Loading branch information