-
Notifications
You must be signed in to change notification settings - Fork 424
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Open Source Contribution Proposal: better-npm-audit #1938
Merged
+27
−0
Conversation
This file contains bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Interesting proposal. Have you created an issue on that project? |
Yes we worked on an open issue in the project. And ask the owner if help is still needed. |
Can you add a link to that issue? |
jeemok/better-npm-audit#67 @khaes-kth |
Can you add it to the readme as well, please? |
Just added it |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Labels
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Assignment Proposal
Title
Contributing to better-npm-audit
Names and KTH ID
Deadline
Deadline task 5
Category
Contribution to open-source
Description
better-npm-audit is a repository for creating a more informative npm-audit output. This relates to DevOps because it is an improvement on an existing package manager and is used to make software development more efficient to debug and automates common development tasks. It also relates to DevOps because it makes it easier to understand dependencies vulnerabilities and possible security failures.
We have addressed an issue that was raised and requested to be implemented by the author of the library. We will create a feature that splits the output of better-npm-audit into 2 tables, separated as developer dependencies and production dependencies. This will help developers prioritize which packages to fix, since a developer vulnerability is generally not as problematic.
The repository has 77 stars, 218 commits, and has an active community on GitHub since we recently had a conversation with the author.