issues
search
lirantal
/
lockfile-lint
Lint an npm or yarn lockfile to analyze and detect security issues
Apache License 2.0
776
stars
35
forks
source link
issues
Newest
Newest
Most commented
Recently updated
Oldest
Least commented
Least recently updated
Usage in a monorepo with local packages
#150
jackdbd
closed
1 year ago
1
[Snyk] Upgrade cosmiconfig from 7.1.0 to 8.0.0
#149
lirantal
closed
1 year ago
3
[Snyk] Upgrade yargs from 16.2.0 to 17.6.2
#148
lirantal
closed
1 year ago
1
feat: add support for yarn berry lockfiles
#147
brad-decker
closed
1 year ago
6
Fix #145: cli parsing - handle correctly false value for validator
#146
yoavain
closed
1 year ago
5
Bug: CLI Argument parsing typos invokes other validates
#145
wingy3181
closed
1 year ago
10
Rename command-line argument for validate-integrity
#144
yoavain
closed
1 year ago
1
[Snyk] Upgrade yargs from 16.2.0 to 17.5.1
#143
lirantal
closed
1 year ago
0
fix(repository): defined `repository.path` property in `package.json`
#142
travi
closed
1 year ago
0
Renovate PRs don't include release notes
#141
travi
closed
1 year ago
0
chore: update codecov action to v3
#140
lirantal
closed
1 year ago
0
fix: too noisy error messages
#139
lirantal
closed
1 year ago
0
lockfile-lint failed parsing a URL object from given host value so using as is
#138
glensc
closed
1 year ago
4
feat(validate package versions): matches versions with resolved fields
#137
bozdoz
closed
1 year ago
6
feat(lockfile-lint-api): adds validation for resolved fields (#120)
#136
bozdoz
closed
1 year ago
3
Feature: Integrity hash type validator
#135
yoavain
closed
1 year ago
9
feat: add format options for report output
#134
rheimus
closed
1 year ago
6
Bare output option for basic environments
#133
iessa-pragg-ctct
closed
11 months ago
1
docs: update for references of lockfile injection
#132
lirantal
closed
1 year ago
1
fix(lockfile-lint-api): remove extra console.log in yarn.lock parsing
#131
julienw
closed
2 years ago
2
fix: continues #125 with lockfile update
#130
lirantal
closed
2 years ago
1
publishing doesn't seem to work anymore
#129
naugtur
closed
2 years ago
10
Ability to validate lockfileVersion
#128
appsbytom
closed
2 years ago
7
fix #125 - remove debug dependency from lockfile-lint-api
#127
naugtur
closed
2 years ago
4
feat(lockfile-lint-api): replace yarnpkg/lockfile with yarnpkg/parser…
#126
naugtur
closed
2 years ago
1
Remove strict dependency on `debug` in lockfile-lint-api
#125
naugtur
closed
2 years ago
0
Epic: enable fearless cooperation
#124
naugtur
closed
1 year ago
3
Limit reliance on `fs` and other powerful builtins in lockfile-lint-api
#123
naugtur
closed
2 years ago
4
Replace @yarnpkg/lockfile with @yarnpkg/parsers
#122
naugtur
closed
2 years ago
2
ci: bump github actions
#121
Fdawgs
closed
2 years ago
0
Require Resolved field, and Check package versions
#120
bozdoz
closed
1 year ago
8
chore: document `ValidatePackageNames`
#119
achrinza
closed
2 years ago
1
[Snyk] Upgrade cosmiconfig from 6.0.0 to 7.0.1
#118
snyk-bot
closed
1 year ago
0
[Snyk] Upgrade yargs from 16.2.0 to 17.3.1
#117
snyk-bot
closed
1 year ago
1
[Snyk] Upgrade object-hash from 2.2.0 to 3.0.0
#116
snyk-bot
closed
1 year ago
0
Error could be more descriptive
#115
vipulgupta2048
closed
1 year ago
2
feat(cli arg): validate package names
#114
fabioberger
closed
2 years ago
9
Verify that the resolved URL references fetches the exact package it's nested under in the lockfile
#113
fabioberger
closed
2 years ago
2
Use allowed url patterns in a single hostname
#112
eserkaraca
closed
11 months ago
10
fix: missing git step on release with lerna
#111
juanpicado
closed
3 years ago
3
Replace Travis CI with Github Actions
#110
abdulhannanali
closed
3 years ago
5
Replace Travis CI with Github Actions
#109
abdulhannanali
closed
2 years ago
3
Are lockfiles actually a vulnerability?
#108
jeznag
closed
11 months ago
3
102 fix empty dependencies
#107
salesh
closed
3 years ago
3
test: Handle unknown validator function name
#106
anishkny
closed
3 years ago
2
Allow tying packages/scopes to a specific host
#105
ewanharris
closed
3 years ago
1
feat: Use symbols for easier to read output (#21)
#104
emimuresan
closed
3 years ago
2
Additional validations
#103
MikeRalphson
closed
3 years ago
3
Crash when package-lock.json has no dependencies
#102
MikeRalphson
closed
3 years ago
2
Yarn v2 support needed
#101
jdanil
closed
1 year ago
22
Previous
Next