strvcom/code-quality-tools

Security

dannytce opened this issue · 4 comments

There is snyk, there is this little guy: https://github.com/lirantal/is-website-vulnerable

Should we consider adding these tools to this monorepo?

If I can help let me know.
Perhaps consider lockfile-lint too, as a reading reference see this: https://snyk.io/blog/why-npm-lockfiles-can-be-a-security-blindspot-for-injecting-malicious-modules/

Hey @lirantal! Thank you very much for pointing out lockfile-lint!

No help needed at this point, but if we will have any struggles, we will definitely ping you. Thank you again!

Sure thing! 🤗

Resolved in #106