diff --git a/.snyk b/.snyk new file mode 100644 index 0000000..1fe11f9 --- /dev/null +++ b/.snyk @@ -0,0 +1,8 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +version: v1.12.0 +ignore: {} +# patches apply the minimum changes required to fix a vulnerability +patch: + 'npm:lodash:20180130': + - mobx-react-matchmedia > match-media-mock > lodash: + patched: '2018-07-03T01:41:24.951Z' diff --git a/package.json b/package.json index 187020c..71c6a47 100644 --- a/package.json +++ b/package.json @@ -3,8 +3,7 @@ "version": "0.8.0-alpha.8", "license": "MIT", "description": "RFX Stack - Universal App featuring: React + Feathers + MobX", - "author": - "Claudio Savino (https://twitter.com/foxhound87)", + "author": "Claudio Savino (https://twitter.com/foxhound87)", "repository": { "type": "git", "url": "git://github.com/foxhound87/rfx-stack.git" @@ -16,20 +15,16 @@ "build:client:web": "cross-env NODE_ENV=production webpack", "build:server:web": "cross-env NODE_ENV=production webpack", "build:server:api": "cross-env NODE_ENV=production webpack", - "web:dev": - "cross-env NODE_ENV=development webpack --watch ./run/start.web.js", - "web:prod": - "cross-env NODE_ENV=production node ./run/build/start.web.bundle.js", + "web:dev": "cross-env NODE_ENV=development webpack --watch ./run/start.web.js", + "web:prod": "cross-env NODE_ENV=production node ./run/build/start.web.bundle.js", "api:dev": "cross-env NODE_ENV=development nodemon ./run/start.api.js", - "api:debug": - "cross-env NODE_ENV=development nodemon --inspect ./run/start.api.js", - "api:debug-brk": - "cross-env NODE_ENV=development nodemon --inspect --inspect-brk ./run/start.api.js", - - "api:prod": - "cross-env NODE_ENV=production node ./run/build/start.api.bundle.js", + "api:debug": "cross-env NODE_ENV=development nodemon --inspect ./run/start.api.js", + "api:debug-brk": "cross-env NODE_ENV=development nodemon --inspect --inspect-brk ./run/start.api.js", + "api:prod": "cross-env NODE_ENV=production node ./run/build/start.api.bundle.js", "seed:dev": "cross-env NODE_ENV=development node ./run/start.seeder.js", - "seed:prod": "cross-env NODE_ENV=production node ./run/start.seeder.js" + "seed:prod": "cross-env NODE_ENV=production node ./run/start.seeder.js", + "snyk-protect": "snyk protect", + "prepare": "npm run snyk-protect" }, "dependencies": { "animate.css": "3.5.2", @@ -94,7 +89,8 @@ "tachyons": "4.6.1", "uuid": "3.0.1", "validatorjs": "3.11.0", - "winston": "2.3.0" + "winston": "2.3.0", + "snyk": "^1.88.0" }, "peerDependencies": { "react": "15.4.2", @@ -151,5 +147,6 @@ "webpack-merge": "2.3.1", "webpack-node-externals": "1.5.4", "whatwg-fetch": "2.0.1" - } + }, + "snyk": true }