diff --git a/packages/composer-wallet-filesystem/.snyk b/packages/composer-wallet-filesystem/.snyk new file mode 100644 index 0000000000..fb590acec9 --- /dev/null +++ b/packages/composer-wallet-filesystem/.snyk @@ -0,0 +1,8 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +version: v1.13.3 +ignore: {} +# patches apply the minimum changes required to fix a vulnerability +patch: + SNYK-JS-AXIOS-174505: + - composer-common > axios: + patched: '2019-05-06T07:05:10.192Z' diff --git a/packages/composer-wallet-filesystem/package.json b/packages/composer-wallet-filesystem/package.json index f0ae0c9d55..7fe40847dc 100644 --- a/packages/composer-wallet-filesystem/package.json +++ b/packages/composer-wallet-filesystem/package.json @@ -16,7 +16,9 @@ "lint": "eslint .", "test": "nyc mocha test", "mocha": "mocha --recursive test", - "nyc": "nyc mocha --recursive test" + "nyc": "nyc mocha --recursive test", + "snyk-protect": "snyk protect", + "prepublish": "npm run snyk-protect" }, "repository": { "type": "git", @@ -79,7 +81,8 @@ "dependencies": { "composer-common": "0.20.1", "mkdirp": "0.5.1", - "rimraf": "2.5.4" + "rimraf": "2.5.4", + "snyk": "^1.161.1" }, "nyc": { "exclude": [ @@ -99,5 +102,6 @@ "branches": 100, "functions": 100, "lines": 100 - } + }, + "snyk": true }