Commit
This commit does not belong to any branch on this repository, and may belong to a fork outside of the repository.
Update: avoid printing TOTP to output when publishing (#31)
This prevents the npm 2FA code from being printed to standard output. As a result, an attacker who had compromised an npm access token and also had access to build output would no longer be able to obtain a TOTP and use it in the next 30 seconds.
- Loading branch information