From 6186b7dae0c6b9f7daa5bd2357e515c5a56a2e09 Mon Sep 17 00:00:00 2001 From: nikpivkin Date: Mon, 23 Dec 2024 23:35:38 +0600 Subject: [PATCH] docs: add note about --include-dev-deps Signed-off-by: nikpivkin --- docs/docs/coverage/language/python.md | 3 +++ 1 file changed, 3 insertions(+) diff --git a/docs/docs/coverage/language/python.md b/docs/docs/coverage/language/python.md index 00c9bf585a3d..3033b2d71941 100644 --- a/docs/docs/coverage/language/python.md +++ b/docs/docs/coverage/language/python.md @@ -128,6 +128,9 @@ To build the correct dependency graph, `pyproject.toml` also needs to be present License detection is not supported for `Poetry`. +By default, Trivy doesn't report development dependencies. Use the `--include-dev-deps` flag to include them. + + ### uv Trivy uses `uv.lock` to identify dependencies and find vulnerabilities.