ossf / package-manager-best-practices

Collection of security best practices for package managers.
Apache License 2.0
159 stars 19 forks source link

Move npm document to review directory. #4

Closed jeffmendoza closed 2 years ago

jeffmendoza commented 2 years ago

In preparation of starting the review process, move this document.

ljharb commented 2 years ago

so comments should wait until after this PR lands?

jeffmendoza commented 2 years ago

so comments should wait until after this PR lands?

Now is fine. this will be merged soon. Go ahead and create issues for the different areas of discussion, start them with "RC npm" (I'll be labeling them too).

It will be nice to have some comments already as people start looking to show how they are done. Thanks!!