npm-audit-beautify
v1.0.4
Published
Wraps `npm audit` and renders findings sorted by severity, plus library and severity occurrence maps
Readme
npm-audit-beautify
A small CLI that wraps npm audit --json and renders the results in a more readable, severity-sorted table.
It groups the output into three views:
- Vulnerabilities sorted by severity from critical to info
- Library → occurrence count
- Severity → occurrence count
This makes it easier to see which dependencies are repeatedly affected and which severity buckets dominate.
Features
- Runs
npm audit --jsonfor the current project - Sorts findings by severity, then by package and title
- Shows direct vs transitive vulnerability context
- Displays advisory IDs, ranges, and suggested fix information
- Forwards extra
npm auditflags such as--omit,--audit-level, and--workspaces - Preserves the audit exit code so CI behavior stays predictable
Installation
Install globally:
npm install -g npm-audit-beautifyOr run it without installing globally:
npx npm-audit-beautifyUsage
npm-audit-beautify [npm audit args]Examples:
npm-audit-beautify
npm-audit-beautify --omit=dev
npm-audit-beautify --audit-level=high
npm-audit-beautify --workspacesAny extra arguments are forwarded to npm audit.
Example output
Vulnerabilities (7) — sorted by severity
┌──────────┬───────────────┬─────────┬───────────┬──────────────────────────────┬────────────────────┬──────────────┐
│ Severity │ Package │ Direct │ Advisory │ Title │ Vulnerable range │ Fix │
├──────────┼───────────────┼─────────┼───────────┼──────────────────────────────┼────────────────────┼──────────────┤
│ critical │ lodash │ yes │ 1065 │ Prototype Pollution │ <4.17.21 │ 4.17.21 │
│ high │ minimist │ no │ 1500 │ Prototype Pollution │ <0.2.7 │ 0.2.7 │
│ moderate │ glob-parent │ no │ 2665 │ ... │ <5.1.0 │ 5.1.0 │
└──────────┴───────────────┴─────────┴───────────┴──────────────────────────────┴────────────────────┴──────────────┘
Library → occurrences (3 libraries)
┌───────────────┬───────┬────────────────────┐
│ Library │ Count │ Highest severity │
├───────────────┼───────┼────────────────────┤
│ lodash │ 2 │ critical │
│ minimist │ 1 │ high │
│ glob-parent │ 1 │ moderate │
└───────────────┴───────┴────────────────────┘
Severity → occurrences
┌──────────┬─────────┬────────────────────┐
│ Severity │ Findings │ Unique libraries │
├──────────┼─────────┼──────────────────┤
│ critical │ 1 │ 1 │
│ high │ 1 │ 1 │
│ moderate │ 1 │ 1 │
└──────────┴─────────┴──────────────────┘Help
npm-audit-beautify --helpExit behavior
The command exits with the same exit status as npm audit. This makes it suitable for CI pipelines and scripts.
License
MIT
