DiamondLightSource / DiamondLightSource/mx-daq-ui

Decide the approach for PNPM audit and how to integrate it into CI

Open
#142 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
TypeScript
Stars
1
Forks
1
Avg merge
23h 4m
Merged PRs (30d)
8

Description

Pnpm audit seems to cause issues with version mismatching when trying to fix it and new issues come up quite frequently. So it's been removed for now, and this ticket is to decide how to reimplement it without it slowing down development too much.

Contributor guide

No contributing guide indexed for this repository

Research direction

Start by reviewing the repository's current CI configuration and PNPM setup, since the issue names no specific files or tests. Compare ways to reintroduce PNPM audit without blocking development, and consider the version-mismatch and frequently changing findings described in the issue. Done means the team has agreed on an integration approach.

Written by the indexing model from the issue text.

Assessment

Tech stack
typescript
Domain
ci-cd, security
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Quiet
Clarity
Needs clarification
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.