summaryrefslogtreecommitdiff
path: root/deps/npm/lib/audit.js
blob: 1b31401b1a6b0bc9d5aadea02b6700b302b77189 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
const Arborist = require('@npmcli/arborist')
const auditReport = require('npm-audit-report')
const npm = require('./npm.js')
const output = require('./utils/output.js')
const reifyFinish = require('./utils/reify-finish.js')
const auditError = require('./utils/audit-error.js')

const audit = async args => {
  const arb = new Arborist({
    ...npm.flatOptions,
    audit: true,
    path: npm.prefix,
  })
  const fix = args[0] === 'fix'
  await arb.audit({ fix })
  if (fix)
    await reifyFinish(arb)
  else {
    // will throw if there's an error, because this is an audit command
    auditError(arb.auditReport)
    const reporter = npm.flatOptions.json ? 'json' : 'detail'
    const result = auditReport(arb.auditReport, {
      ...npm.flatOptions,
      reporter,
    })
    process.exitCode = process.exitCode || result.exitCode
    output(result.report)
  }
}

const cmd = (args, cb) => audit(args).then(() => cb()).catch(cb)

const usageUtil = require('./utils/usage')
const usage = usageUtil(
  'audit',
  'npm audit [--json] [--production]' +
  '\nnpm audit fix ' +
  '[--force|--package-lock-only|--dry-run|--production|--only=(dev|prod)]'
)

const completion = async (opts) => {
  const argv = opts.conf.argv.remain

  if (argv.length === 2)
    return ['fix']

  switch (argv[2]) {
    case 'fix':
      return []
    default:
      throw new Error(argv[2] + ' not recognized')
  }
}

module.exports = Object.assign(cmd, { usage, completion })