Hacker News new | ask | show | jobs
by thawkins 2242 days ago
There are commercial tools like blackduck, sonartype/nexus which are used to sczn dependancies of not1 just node code, and highlite ourof date packages, known vulnerabilities, and license problems.