educational-supply-chain-demo
v1.0.2
Published
SAFE: Demonstrates that an entirely safe package can be compromised by an upstream package (postinstall-script-package). Upstream package simply logs out that you could have been compromised.
Readme
See the README.md for postinstall-script-package. This package demonstrates a supply chain attack. SAFE: The postinstall script only runs console.log commands Again: See postinstall-script-package
