Skip to content

Add npm minimum-release-age and sfw (incl. aliases) #122

Description

@karlhorky

pnpm usage already has security settings configured (as well as the secure defaults for other config settings):

We recommend students use pnpm, but students may follow guides online which use npm without noticing the difference.

npm is still a bit behind in terms of supply chain security, but we can achieve some security with sfw:

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions