3 ms·
Show HN: NPM-Audit-to-Report
- thangngoc89 2y agoThe README is kinda light on details. This is a utility written in Go that convert yarn’s audit file from json to Markdown for reporting as part of the CI pipeline. I’m wondering if yarn’s audit is better than npm’s audit?
- yehors 2y agoActually, it's the same. As I understand they use one database.
- cluckindan 2y agoWhy not use npm audit --json and just pass it to a template?
- thangngoc89 2y agoThe script seems to be invoking yarn audit --json and does the templating.
- yehors 2y agoNot easy it sounds. Generated file has JSONL and each has summary or advisory lines. My script just processes them to a Markdown in Go.