Skip to main content

JS-DEPENDENCY-AUDIT

PyPI - License PyPI - Python Version PyPI - Version

A library to help perform a security audit check using a yarn (v1) lock file.

Not intended to be used as a standalone tool, but as part of a system periodically checking for vulnerabilities.

Usage

from js_dependency_audit.lock_file_content import LockFileContent
from js_dependency_audit.security_audit_request import request_security_audit

lock_file_content = LockFileContent.from_yarn_file("files/yarn.lock")
audit_data = request_security_audit(lock_file_content)

License

This project is licensed under the MIT License - see the LICENSE file for details.

Metadata

Release files for js-dependency-audit 0.0.1

For a detailed explanation of source distributions (sdists) and built distributions (wheels), please see the package formats documentation.

Source distribution (sdist)

Source distribution for js-dependency-audit 0.0.1
File Size Uploaded
js_dependency_audit-0.0.1.tar.gz 5.4 kB Details

Built distribution (wheel)

Table of built distributions (wheels) for js-dependency-audit 0.0.1
File Interpreter ABI Platform
js_dependency_audit-0.0.1-py3-none-any.whl Python 3 none any Details

Total release size: 11.8 kB

Release files / js_dependency_audit-0.0.1.tar.gz

Download URL js_dependency_audit-0.0.1.tar.gz
Size 5.4 kB
Tags Source
SHA-256 checksum
How to use checksums
bff61fc72b1563985bf3a520897ee168ae6236043fa1d1b2c9bbee79b62bc229
BLAKE2b-256 checksum
How to use checksums
d148b9b9bc4fc6923dadb8332e8030a23da6aedfa152b2c49d3489395ef09eb6
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/6.1.0 CPython/3.12.3

Release files / js_dependency_audit-0.0.1-py3-none-any.whl

Download URL js_dependency_audit-0.0.1-py3-none-any.whl
Size 6.4 kB
Tags Python 3
SHA-256 checksum
How to use checksums
7af0a7ba44eb08e6f933fd42b9a3272a98137e65356f085c7e762d7139016082
BLAKE2b-256 checksum
How to use checksums
97286cf198f6911b4a8370118e02a0c2771f9cab9e217965254f2b1d29cd069a
Upload date
Uploaded using Trusted Publishing?
What is trusted publishing?
No
Uploaded via twine/6.1.0 CPython/3.12.3

Release history Release notifications | RSS feed

This release

0.0.1 This release

2 release files

Anthropic, PBC Visionary sponsor Bloomberg Visionary sponsor Hudson River Trading Visionary sponsor Meta Visionary sponsor NVIDIA Visionary sponsor Microsoft Sustainability sponsor Depot Continuous Integration AWS Cloud computing and Security Sponsor Datadog Monitoring Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page