Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

unlock dependencies for deduplication and easier vulnerability mitigation #2

Merged
merged 1 commit into from
Apr 22, 2019
Merged

unlock dependencies for deduplication and easier vulnerability mitigation #2

merged 1 commit into from
Apr 22, 2019

Conversation

csimi
Copy link

@csimi csimi commented Apr 19, 2019

If we use the caret for specifying dependency versions npm can deduplicate packages more often.
Additionally, fixing npm audit vulnerabilities will be possible without "Manual Review" more often without having to release a new version of saml20 each time.

@phylp
Copy link
Owner

phylp commented Apr 22, 2019

Thanks @csimi!

@phylp phylp merged commit 7c85329 into phylp:master Apr 22, 2019
@csimi csimi deleted the unlock-dependencies branch April 22, 2019 17:40
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants