diff --git a/pages/common/npm-audit.md b/pages/common/npm-audit.md new file mode 100644 index 00000000000000..032a5b37645187 --- /dev/null +++ b/pages/common/npm-audit.md @@ -0,0 +1,33 @@ +# npm audit + +> Scan for known vulnerabilities in project dependencies. +> Reports vulnerabilities and suggests remediation. +> More information: . + +- Scan the project’s dependencies for known vulnerabilities: + +`npm audit` + +- Automatically fix vulnerabilities in the project's dependencies: + +`npm audit fix` + +- Force an automatic fix to dependencies with vulnerabilities: + +`npm audit fix {{-f|--force}}` + +- Update the lock file without modifying the `node_modules` directory: + +`npm audit fix --package-lock-only` + +- Perform a dry run. Simulate the fix process without making any changes: + +`npm audit fix --dry-run` + +- Output audit results in JSON format: + +`npm audit --json` + +- Configure the audit to only fail on vulnerabilities above a specified severity: + +`npm audit --audit-level={{info|low|moderate|high|critical}}`