@@ -224,21 +224,30 @@ require --no-unpack ...`` option to disable unpacking.
224
224
Checking Security Vulnerabilities
225
225
---------------------------------
226
226
227
- A good and recommended security practice is to check from time to time whether your
228
- project's dependencies contain any known security vulnerabilities. You can leverage the
229
- ` Local PHP Security Checker `_ to do so.
227
+ The `` symfony `` binary created when you ` install Symfony CLI `_ provides a command
228
+ to check whether your project's dependencies contain any known security
229
+ vulnerability:
230
230
231
- You can also execute this process regularly to be able to
231
+ .. code-block :: terminal
232
+
233
+ $ symfony check:security
234
+
235
+ A good security practice is to execute this command regularly to be able to
232
236
update or replace compromised dependencies as soon as possible. The security
233
237
check is done locally by fetching the public `PHP security advisories database `_,
234
238
so your ``composer.lock `` file is not sent on the network.
235
239
240
+ The ``check:security `` command terminates with a non-zero exit code if any of
241
+ your dependencies is affected by a known security vulnerability. This way you
242
+ can add it to your project build process and your continuous integration
243
+ workflows to make them fail when there are vulnerabilities.
244
+
236
245
.. tip ::
237
246
238
- The `` check:security `` command terminates with a non-zero exit code if
239
- any of your dependencies is affected by a known security vulnerability .
240
- This way you can add it to your project build process and your continuous
241
- integration workflows to make them fail when there are vulnerabilities .
247
+ In continuous integration services you can check security vulnerabilities
248
+ using a different stand-alone project called ` Local PHP Security Checker `_ .
249
+ This is the same project used internally by `` check:security `` but much
250
+ smaller in size than the entire Symfony CLI .
242
251
243
252
Symfony LTS Versions
244
253
--------------------
0 commit comments