sheriff
sheriff copied to clipboard
refactor: switch from js-yaml package to yaml
Alternative to #103. js-yaml is largely unmaintained these days (previous release was 4 years ago until this week), and yaml is a regularly maintained, zero-dependency alternative.
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
| Diff | Package | Supply Chain Security |
Vulnerability | Quality | Maintenance | License |
|---|---|---|---|---|---|---|
| yaml@2.8.1 |