nsp-preprocessor-yarn
Advanced tools
Comparing version 1.0.0 to 1.0.1
{ | ||
"name": "nsp-preprocessor-yarn", | ||
"version": "1.0.0", | ||
"version": "1.0.1", | ||
"description": "", | ||
@@ -9,2 +9,3 @@ "main": "index.js", | ||
}, | ||
"repository": "github:hermanbanken/nsp-preprocessor-yarn", | ||
"author": "", | ||
@@ -11,0 +12,0 @@ "license": "ISC", |
@@ -22,8 +22,6 @@ # Yarn.lock preprocessor for NSP | ||
"dependencies": { | ||
"nsp": "git://github.com/nodesecurity/nsp.git#41f967f", | ||
"nsp-preprocessor-yarn": "nsp-preprocessor-yarn" | ||
}, | ||
"devDependencies": { | ||
"nsp": "git://github.com/nodesecurity/nsp.git#41f967f", | ||
"nsp-preprocessor-yarn": "nsp-preprocessor-yarn" | ||
} | ||
} | ||
```` |
Shell access
Supply chain riskThis module accesses the system shell. Accessing the system shell increases the risk of executing arbitrary code.
Found 1 instance in 1 package
Mixed license
License(Experimental) Package contains multiple licenses.
Found 1 instance in 1 package
No repository
Supply chain riskPackage does not have a linked source code repository. Without this field, a package will have no reference to the location of the source code use to generate the package.
Found 1 instance in 1 package
9
136
8124
1
27
1