prysmaticlabs / prysm-web-ui

Web interface for the Prysm validator
35 stars 26 forks source link

CI for web-ui should include a run of npm audit #195

Open james-prysm opened 3 years ago

james-prysm commented 3 years ago

dependency management and keeping our libraries up to date is key to protecting our users, we should try to incorporate as many updates to vulnerabilities as we can to provide security to users, one way we can do this is by running the npm audit command on our angular project so we can update appropriate vulnerabilities for our web ui.

prestonvanloon commented 3 years ago

Let's also take a look at LavaMoat as well.

https://github.com/LavaMoat/LavaMoat

On Thu, Sep 30, 2021 at 3:05 PM james-prysm @.***> wrote:

dependency management and keeping our libraries up to date is key to protecting our users, we should try to incorporate as many updates to vulnerabilities as we can to provide security to users, one way we can do this is by running the npm audit command on our angular project so we can update appropriate vulnerabilities for our web ui.

— You are receiving this because you are subscribed to this thread. Reply to this email directly, view it on GitHub https://github.com/prysmaticlabs/prysm-web-ui/issues/195, or unsubscribe https://github.com/notifications/unsubscribe-auth/ABXJHYTKAKUP4WFRO34ML5TUES7HVANCNFSM5FDDY5XA . Triage notifications on the go with GitHub Mobile for iOS https://apps.apple.com/app/apple-store/id1477376905?ct=notification-email&mt=8&pt=524675 or Android https://play.google.com/store/apps/details?id=com.github.android&referrer=utm_campaign%3Dnotification-email%26utm_medium%3Demail%26utm_source%3Dgithub.