Skip to content

Conversation

ghost
Copy link

@ghost ghost commented Dec 11, 2021

npm install will not validate the package HASH from the package-lock.json. Given the open source nature, it is probably better to know what exactly the black box is doing. :)

`npm install` will not validate the package HASH from the `package-lock.json`. Given the open source nature, it is probably better to know what exactly the black box is doing. :)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants