forked from reactioncommerce/reaction
-
Notifications
You must be signed in to change notification settings - Fork 0
/
.snyk
41 lines (41 loc) · 1.63 KB
/
.snyk
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities.
version: v1.12.0
# ignores vulnerabilities until expiry date; change duration by modifying expiry date
ignore:
'npm:hoek:20180212':
- '*':
reason: 'Possible false positive, waiting on requestjs to updated hawk version'
expires: 2018-06-20T00:00:00.000Z
'npm:shelljs:20140723':
- eslint-config-react-tools > eslint-plugin-class-property > eslint > shelljs:
reason: no patch available
expires: '2018-03-22T04:22:44.834Z'
'npm:bootstrap:20160627':
- bootstrap:
reason: We're not going to update to Bootstrap 4 any time soon
expires: '2018-07-26T20:23:03.274Z'
'npm:lodash:20180130':
- '*':
reason: no patch
expires: 2018-06-20T00:00:00.000Z
'npm:tunnel-agent:20170305':
- '*':
reason: No patch and we do not use this optional package
expires: '2018-06-30T19:14:36.152Z'
'npm:ua-parser-js:20180227':
- '*':
reason: Waiting on fbjs to update to the latest ua-parser-js version
expires: 2018-06-30T00:00:00.000Z
'npm:stringstream:20180511':
- '*':
reason: Awaiting dependency updates of request 2.83.0 to gte 2.86
expires: 2018-06-30T00:00:00.000Z
'npm:deep-extend:20180409':
- '*':
reason: No patch available https://github.com/unclechu/node-deep-extend/issues/41
expires: 2018-06-20T00:00:00.000Z
'npm:base64url:20180511':
- '*':
reason: Twillio and nexmo will be removed soon, file-collections isn't using any google-cloud stuff so this vuln doesn't apply
expires: 2018-06-20T00:00:00.000Z
patch: {}