Skip to content
This repository was archived by the owner on Jul 31, 2019. It is now read-only.

Comments

Adds npm Audit to node pipeline#542

Open
orspetol wants to merge 1 commit intoevernym:masterfrom
orspetol:master
Open

Adds npm Audit to node pipeline#542
orspetol wants to merge 1 commit intoevernym:masterfrom
orspetol:master

Conversation

@orspetol
Copy link

@orspetol orspetol commented Oct 4, 2018

adds npm audit to pipeline and failure to npm audit

@hadleym
Copy link
Contributor

hadleym commented Oct 4, 2018

Joe has concerns about the severity levels that we fail on. He can elaborate more. Currently we're only seeing a severe level failure on jdoc, which is a developer dependency. So I would think we could tweak npm audit to ignore developer dependencies.

Copy link

@glowkey glowkey left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

This PR needs to be raised against the evernym/vcx-ci repo instead. This repo is now mothballed.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants