/
audit.js
64 lines (56 loc) · 1.58 KB
/
audit.js
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
const Arborist = require('@npmcli/arborist')
const auditReport = require('npm-audit-report')
const reifyFinish = require('./utils/reify-finish.js')
const auditError = require('./utils/audit-error.js')
const usageUtil = require('./utils/usage.js')
class Audit {
constructor (npm) {
this.npm = npm
}
/* istanbul ignore next - see test/lib/load-all-commands.js */
get usage () {
return usageUtil(
'audit',
'npm audit [--json] [--production]' +
'\nnpm audit fix ' +
'[--force|--package-lock-only|--dry-run|--production|--only=(dev|prod)]'
)
}
async completion (opts) {
const argv = opts.conf.argv.remain
if (argv.length === 2)
return ['fix']
switch (argv[2]) {
case 'fix':
return []
default:
throw new Error(argv[2] + ' not recognized')
}
}
exec (args, cb) {
this.audit(args).then(() => cb()).catch(cb)
}
async audit (args) {
const arb = new Arborist({
...this.npm.flatOptions,
audit: true,
path: this.npm.prefix,
})
const fix = args[0] === 'fix'
await arb.audit({ fix })
if (fix)
await reifyFinish(this.npm, arb)
else {
// will throw if there's an error, because this is an audit command
auditError(this.npm, arb.auditReport)
const reporter = this.npm.flatOptions.json ? 'json' : 'detail'
const result = auditReport(arb.auditReport, {
...this.npm.flatOptions,
reporter,
})
process.exitCode = process.exitCode || result.exitCode
this.npm.output(result.report)
}
}
}
module.exports = Audit