Skip to content

Conversation

@jespino
Copy link
Contributor

@jespino jespino commented Dec 5, 2025

Add --ignore-scripts flag to yarn install to prevent execution of potentially malicious scripts during package installation.

Related to PDE-128

Add --ignore-scripts flag to yarn install to prevent execution of
potentially malicious scripts during package installation.

Related to PDE-128

Co-authored-by: Ona <no-reply@ona.com>
Copy link

@corneliusludmann corneliusludmann left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM - straightforward addition of --ignore-scripts flag.

@jespino jespino merged commit e081dc6 into main Dec 10, 2025
1 check failed
@jespino jespino deleted the pde-128-disable-npm-scripts branch December 10, 2025 08:38
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants