@aspidasec/adapters-npm-audit
v0.1.0
Published
npm audit scanner adapter for AspidaSec (OWASP A06 - Vulnerable Components)
Maintainers
Readme
@aspidasec/adapters-npm-audit
npm audit adapter for AspidaSec dependency findings.
Responsibility
- Parse
npm audit --jsonoutput. - Map dependency advisories into
NormalizedFindingobjects. - Preserve package names, installed/fixed versions, advisory IDs, CVEs, CWE data, and severity.
Source of truth
- Mapping logic lives in
src/mapper.ts. - Raw npm audit types live in
src/types.ts.
Verification
pnpm --filter @aspidasec/adapters-npm-audit typecheck
pnpm --filter @aspidasec/adapters-npm-audit build