aboutcode-org / aboutcode-org/scancode-toolkit

Use `package.json` to determine the scope of dependencies present in `yarn.lock`

Open
#3,473 0 comments 0 reactions 0 assignees View on GitHub
dependencies package scan
Dominant language
Python
Stars
2.6k
Forks
791
Avg merge
1d 12h
Merged PRs (30d)
5

Description

`yarn.lock` file doesn't explicitly identify the devDependencies and regular dependencies. Therefore, use the associated `package.json` file to correctly determine the scope of the packages present in the yarn.lock file

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.