focal icon indicating copy to clipboard operation
focal copied to clipboard

yarn audit reports malware

Open devtempmac opened this issue 1 year ago • 1 comments

Hello! yarn audit tells me this repo has some malware: https://www.npmjs.com/advisories/1079192 https://www.npmjs.com/advisories/1079200

devtempmac avatar Apr 08 '23 05:04 devtempmac

Hey. Thank you for pointing this out. Both focal-todomvc and focal-manual-tests are not real packages. It's an example of how to use the focal itself. So, no one can install them. The report looks like a mistake. Will open a dispute.

oleksiilevzhynskyi avatar Jul 12 '23 04:07 oleksiilevzhynskyi