Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open Source Contribution Proposal: better-npm-audit #1938

Merged
merged 12 commits into from
May 13, 2022
Merged

Open Source Contribution Proposal: better-npm-audit #1938

merged 12 commits into from
May 13, 2022

Conversation

bencivjan
Copy link

Assignment Proposal

Title

Contributing to better-npm-audit

Names and KTH ID

Deadline

Deadline task 5

Category

Contribution to open-source

Description

better-npm-audit is a repository for creating a more informative npm-audit output. This relates to DevOps because it is an improvement on an existing package manager and is used to make software development more efficient to debug and automates common development tasks. It also relates to DevOps because it makes it easier to understand dependencies vulnerabilities and possible security failures.

We have addressed an issue that was raised and requested to be implemented by the author of the library. We will create a feature that splits the output of better-npm-audit into 2 tables, separated as developer dependencies and production dependencies. This will help developers prioritize which packages to fix, since a developer vulnerability is generally not as problematic.

The repository has 77 stars, 218 commits, and has an active community on GitHub since we recently had a conversation with the author.

@khesoem khesoem self-assigned this May 12, 2022
@khesoem khesoem added proposal A task proposal contribution_to_opensource One of the task categories listed in README.md labels May 12, 2022
@khesoem
Copy link

khesoem commented May 12, 2022

Interesting proposal.

Have you created an issue on that project?

@dchahuan
Copy link

dchahuan commented May 12, 2022

Yes we worked on an open issue in the project. And ask the owner if help is still needed.

@khesoem
Copy link

khesoem commented May 13, 2022

Can you add a link to that issue?

@bencivjan
Copy link
Author

jeemok/better-npm-audit#67 @khaes-kth

@khesoem
Copy link

khesoem commented May 13, 2022

Can you add it to the readme as well, please?

@bencivjan
Copy link
Author

Just added it

@khesoem khesoem merged commit 86a33c4 into KTH:2022 May 13, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
contribution_to_opensource One of the task categories listed in README.md proposal A task proposal
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

3 participants