[–] thangngoc89 1y ago ↗ The README is kinda light on details. This is a utility written in Go that convert yarn’s audit file from json to Markdown for reporting as part of the CI pipeline.I’m wondering if yarn’s audit is better than npm’s audit? [–] yehors 1y ago ↗ Actually, it's the same. As I understand they use one database.
[–] cluckindan 1y ago ↗ Why not use npm audit --json and just pass it to a template? [–] thangngoc89 1y ago ↗ The script seems to be invoking yarn audit --json and does the templating. [–] yehors 1y ago ↗ Not easy it sounds. Generated file has JSONL and each has summary or advisory lines. My script just processes them to a Markdown in Go.
[–] yehors 1y ago ↗ Not easy it sounds. Generated file has JSONL and each has summary or advisory lines. My script just processes them to a Markdown in Go.
5 comments
[ 3.1 ms ] story [ 30.9 ms ] threadI’m wondering if yarn’s audit is better than npm’s audit?