IBM / audit-ciLinks
Audit NPM, Yarn, PNPM, and Bun dependencies in continuous integration environments, preventing integration if vulnerabilities are found at or above a configurable threshold while ignoring allowlisted advisories
☆287Updated 4 months ago
Alternatives and similar repositories for audit-ci
Users that are interested in audit-ci are comparing it to the libraries listed below
Sorting:
- ☆128Updated 2 years ago
- The goal of this project is to provide additional features on top of the existing npm audit options☆131Updated 2 weeks ago
- ✨ JSON schema matcher for Jest☆171Updated this week
- A custom runner that allows to tag test files and run groups of tests with Jest.☆129Updated 2 years ago
- Lint an npm or yarn lockfile to analyze and detect security issues☆838Updated 2 weeks ago
- Report jest test errors directly in pull requests☆106Updated last week
- Configurable linter for package.json files☆252Updated last week
- Proof of concept that wraps semantic-release to work with monorepos.☆87Updated last year
- Unleash client SDK for Node.js☆225Updated this week
- Build 🛠 and Bundle 📦 your local workspaces. Like Bazel, Buck, Pants and Please but for Yarn Berry. Build any language, mix javascript, …☆330Updated 7 months ago
- semantic-release plugin to publish a npm package☆290Updated this week
- GitHub action that lints your code with eslint in parallel to your builds☆127Updated 5 years ago
- Apply semantic-release's automatic publishing to a monorepo.☆561Updated last year
- 🍺 dev only postinstall hooks (package.json)☆263Updated 2 years ago
- semantic-release-plus monorepo to build and publish all semantic-release related repositories☆74Updated last year
- JSON Schema validation for Human 👨🎤☆245Updated this week
- 📦 🚀 A slack bot for semantic-release notifying release statuses☆121Updated last year
- Preview the semantic release notes that would result from merging a Github PR.☆42Updated 2 years ago
- The missing `yarn audit fix`☆191Updated this week
- ESLint rules for formatting test suites written for jest.☆156Updated 2 years ago
- A command line tool for bulk-updating lerna package dependencies☆268Updated 2 years ago
- An eslint plugin to find strings that might be secrets/credentials☆163Updated last year
- Get environment variables exposed by CI services☆238Updated last week
- Proof of concept that wraps semantic-release to work with monorepos.☆213Updated last week
- Get details about the current Continuous Integration environment☆361Updated last week
- A JavaScript library to mock the local timezone☆108Updated 2 weeks ago
- Setup automated semver compliant package publishing☆372Updated last year
- Wait for expectation to be true, useful for integration and end to end testing. Integral part of react-testing-library.☆298Updated 6 months ago
- ESLint security plugin for Node.js☆106Updated last year
- Keep watch of your bundle size☆439Updated 6 months ago