npm-packlist
Advanced tools
Comparing version 1.3.0 to 1.4.0
@@ -40,6 +40,8 @@ 'use strict' | ||
'*.orig', | ||
'package-lock.json', | ||
'yarn.lock', | ||
'/package-lock.json', | ||
'/yarn.lock', | ||
'archived-packages/**', | ||
'core', | ||
'!core/', | ||
'!**/core/', | ||
'*.core', | ||
@@ -147,5 +149,7 @@ '*.vgcore', | ||
// if there's a bin, browser or main, make sure we don't ignore it | ||
// also, don't ignore the package.json itself! | ||
const rules = [ | ||
pkg.browser ? '!' + pkg.browser : '', | ||
pkg.main ? '!' + pkg.main : '', | ||
'!package.json', | ||
'!@(readme|copying|license|licence|notice|changes|changelog|history){,.*[^~$]}' | ||
@@ -152,0 +156,0 @@ ] |
{ | ||
"name": "npm-packlist", | ||
"version": "1.3.0", | ||
"version": "1.4.0", | ||
"description": "Get a list of the files to add from a folder into an npm package", | ||
@@ -5,0 +5,0 @@ "directories": { |
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
11769
219
0