Merge pull request #144 from AikidoSec/only-write-stdout-when-safe-chain-audited

Add interceptors for MITM
This commit is contained in:
bitterpanda 2025-11-12 14:27:27 +01:00 committed by GitHub
commit bb0d06cdfc
No known key found for this signature in database
GPG key ID: B5690EEEBB952194
9 changed files with 459 additions and 202 deletions

View file

@ -41,6 +41,22 @@ export function getAuditStats() {
return auditStats;
}
/**
*
* @param {string | undefined} name
* @param {string | undefined} version
* @returns {Promise<boolean>}
*/
export async function isMalwarePackage(name, version) {
if (!name || !version) {
return false;
}
const auditResult = await auditChanges([{ name, version, type: "add" }]);
return !auditResult.isAllowed;
}
/**
* @param {PackageChange[]} changes
*