We request through an API the sha1 and purl fields of the Package we are looking up
These are separate and tracked in #88
- Trigger mining, matching, scanning of the dependency trees, possibly with priority for runtime dependencies over others
- Trigger mining, matching, scanning for newer versions of packages that were matched
- Trigger mining, matching, scanning for older versions of packages that were matched
- Create a watcher that looks periodically for new versions of a package that was requested, may be by registering interest in this package
We request through an API the sha1 and purl fields of the Package we are looking up
get_or_fetch_packageAPI endpointget_packageandget_or_fetch_packageAPI endpoints)get_or_fetch_packageAPI endpoint)get_packageorget_or_fetch_packageAPI endpoint)These are separate and tracked in #88