rehype-prism icon indicating copy to clipboard operation
rehype-prism copied to clipboard

mrm package is a dependency but is unused

Open rdmurphy opened this issue 4 years ago • 1 comments

Unless I'm super missing something (always possible!) I don't see where the mrm package gets used anywhere.

https://github.com/mapbox/rehype-prism/blob/fb4174fce30a1cde8d784fa94e7c04d8a7fa6d28/package.json#L33

This is unfortunately the cause of some security issues being flagged on this library.

rdmurphy avatar Feb 08 '22 06:02 rdmurphy

Seeing these as well. Tried to make PR but I don't think the security settings on this work for non mapbox people

russellpekala avatar Mar 03 '22 05:03 russellpekala