esprima-extract-comments
Advanced tools
Comparing version 0.1.2 to 0.1.3
{ | ||
"name": "esprima-extract-comments", | ||
"description": "Extract code comments from string or from a glob of files using esprima.", | ||
"version": "0.1.2", | ||
"version": "0.1.3", | ||
"homepage": "https://github.com/jonschlinkert/esprima-extract-comments", | ||
@@ -47,3 +47,3 @@ "author": { | ||
"dependencies": { | ||
"esprima": "git+https://git@github.com/ariya/esprima", | ||
"esprima": "^2.7.0", | ||
"lodash": "^2.4.1", | ||
@@ -50,0 +50,0 @@ "map-files": "^0.2.2" |
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
License Policy Violation
LicenseThis package is not allowed per your license policy. Review the package's license to ensure compliance.
Found 1 instance in 1 package
Git dependency
Supply chain riskContains a dependency which resolves to a remote git URL. Dependencies fetched from git URLs are not immutable can be used to inject untrusted code or reduce the likelihood of a reproducible install.
Found 1 instance in 1 package
0
41715
+ Addedesprima@2.7.3(transitive)
Updatedesprima@^2.7.0