
Security News
Crates.io Users Targeted by Phishing Emails
The Rust Security Response WG is warning of phishing emails from rustfoundation.dev targeting crates.io users.
npm-audit-reporter
Advanced tools
This project builds on top of the existing `npm audit` functionality by providing additional features and presenting audit reports in various formats such as HTML, JSON, and tables.
This project builds on top of the existing npm audit
functionality by providing additional features and presenting audit reports in various formats such as HTML, JSON, and tables.
$ npm install --save npm-audit-reporter
or
$ npm install -g npm-audit-reporter
npm-audit-reporter --reporter text
{
"scripts": {
"audit": "npm-audit-reporter --reporter text"
}
}
Now you can run locally or in your CI pipeline:
npm run audit
Output for npm-audit-reporter --reporter text
:
Output for npm-audit-reporter --reporter html
:
Flag | Short | Description |
---|---|---|
--reporter | -r | "text" for console output in tabuler format, "html" for html file |
FAQs
This project builds on top of the existing `npm audit` functionality by providing additional features and presenting audit reports in various formats such as HTML, JSON, and tables.
The npm package npm-audit-reporter receives a total of 17 weekly downloads. As such, npm-audit-reporter popularity was classified as not popular.
We found that npm-audit-reporter demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 0 open source maintainers collaborating on the project.
Did you know?
Socket for GitHub automatically highlights issues in each pull request and monitors the health of all your open source dependencies. Discover the contents of your packages and block harmful activity before you install or update your dependencies.
Security News
The Rust Security Response WG is warning of phishing emails from rustfoundation.dev targeting crates.io users.
Product
Socket now lets you customize pull request alert headers, helping security teams share clear guidance right in PRs to speed reviews and reduce back-and-forth.
Product
Socket's Rust support is moving to Beta: all users can scan Cargo projects and generate SBOMs, including Cargo.toml-only crates, with Rust-aware supply chain checks.