@ax6761 @nuintari
This is my amended /usr/local/etc/periodic/security/410.pkg-audit
This is my ignore list:
[21:38 mydev dvl ~/bin] % cat /usr/home/dvl/bin/ignore-incessant-alert-vulnerable-package.list
python312
oniguruma
I'm using those as well:
[21:38 mydev dvl ~/bin] % grep audit /etc/periodic.conf
security_status_pkgaudit_expiration="NO"
security_status_pkgaudit_deprecation="NO"
[21:36 mydev dvl ~/bin] % diff -ruN ~/bin/410.pkg-audit ~/bin/410.pkg-audit-clean
--- /usr/home/dvl/bin/410.pkg-audit 2026-04-24 21:33:22.167071000 +0000
+++ /usr/home/dvl/bin/410.pkg-audit-clean 2026-04-24 18:49:11.918725000 +0000
@@ -71,8 +71,7 @@
else
echo -n 'Database fetched: '
date -r "${then}" -Iminutes || rc=3
- ${pkgcmd} ${pkgargs} audit $q | /usr/bin/grep --invert-match --file /usr/home/dvl/bin/ignore-incessant-alert-vulnerable-package.list \
- | xargs ${pkgcmd} ${pkgargs} audit $q || { rc=$?; [ $rc -lt 3 ] && rc=3; }
+ ${pkgcmd} ${pkgargs} audit $q || { rc=$?; [ $rc -lt 3 ] && rc=3; }
fi
return $rc
[21:37 mydev dvl ~/bin] %