Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Proposal for an Alternative to Moq Library #2277

Open
KrystianLesniak opened this issue Aug 9, 2023 · 5 comments
Open

Proposal for an Alternative to Moq Library #2277

KrystianLesniak opened this issue Aug 9, 2023 · 5 comments
Labels
enhancement New feature or request

Comments

@KrystianLesniak
Copy link

Dear Flow Launcher Team,

I hope this message finds you well. I am writing to discuss a concern regarding the recent behavior of the Moq library, specifically starting from version 4.20. It has come to our attention that this library has exhibited behavior resembling that of malware, sending unauthorized emails from Git to cloud services. As Flow Launcher project currently utilizes version 4.18.4, which is considered safe, I recommend refraining from updating to the problematic versions.

In light of this situation, I would like to propose the exploration of alternative mocking libraries for Flow Launcher project. Given the critical role of mocking in testing and development processes, it is imperative to maintain a high level of security and reliability.

More information:
https://github.com/moq/moq/issues/1370
https://github.com/moq/moq/issues/1372
https://www.reddit.com/r/dotnet/comments/15ljdcc/does_moq_in_its_latest_version_extract_and_send/

@KrystianLesniak KrystianLesniak added the enhancement New feature or request label Aug 9, 2023
@jjw24
Copy link
Member

jjw24 commented Aug 17, 2023

Thank you for bringing this to our attention. We will look to remove Moq from flow.

@github-actions
Copy link

github-actions bot commented Oct 2, 2023

This issue is stale because it has been open 45 days with no activity. Remove stale label or comment or this will be closed in 5 days.

@github-actions github-actions bot added the Stale label Oct 2, 2023
@GabrielRavier
Copy link

GabrielRavier commented Oct 3, 2023

So what has happened w.r.t. Moq since then ?

@jjw24 jjw24 removed the Stale label Oct 3, 2023
@jjw24
Copy link
Member

jjw24 commented Oct 3, 2023

Current version we are using is safe, we disabled auto-update on this dependency and will remove/replace it in the future.

Copy link

This issue is stale because it has been open 45 days with no activity. Remove stale label or comment or this will be closed in 5 days.

@github-actions github-actions bot added the Stale label Nov 18, 2023
@jjw24 jjw24 removed the Stale label Nov 22, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement New feature or request
Projects
None yet
Development

No branches or pull requests

3 participants