gitlab-npm-audit-parser

Convert `npm audit` reports into GitLab dependency scanner reports

Downloads
7K
Stars
10

GitLab parser for NPM Audit

Usage: gitlab-npm-audit-parser [options]

Options:

  -V, --version     output the version number
  -o, --out <path>  output filename, defaults to gl-dependency-scanning-report.json
  -h, --help        output usage information

How to use

Install this package.

npm install --save-dev gitlab-npm-audit-parser

Add the following job to .gitlab-ci.yml

dependency scanning:
  image: node:10-alpine
  script:
    - npm ci
    - npm audit --json | npx gitlab-npm-audit-parser -o gl-dependency-scanning.json
  artifacts:
    reports:
      dependency_scanning: gl-dependency-scanning.json

Test

cat test/juice-shop.json | ./parse.js -o report.json

Package Rankings
Top 4.88% on Npmjs.org
Related Projects