fluid-lab / gamepad-navigator

GSoC 2020 project
Other
7 stars 10 forks source link

Add tailored security audits to CI builds. #88

Closed the-t-in-rtf closed 2 years ago

the-t-in-rtf commented 2 years ago

We should fail builds if we update to a dependency that brings in vulnerabilities. In other projects I have used npm-audit-resolve for this purpose, since it lets you exclude vulnerabilities you choose (such as those brought in by build and test tools).