focal
focal copied to clipboard
yarn audit reports malware
Hello! yarn audit tells me this repo has some malware: https://www.npmjs.com/advisories/1079192 https://www.npmjs.com/advisories/1079200
Hey. Thank you for pointing this out. Both focal-todomvc
and focal-manual-tests
are not real packages. It's an example of how to use the focal itself. So, no one can install them. The report looks like a mistake. Will open a dispute.