sector27-gmbh/laravel-npm-health-checks
Composer 安装命令:
composer require sector27-gmbh/laravel-npm-health-checks
包简介
A Laravel Health check for npm audit advisories.
README 文档
README
This package adds a Laravel Health check for npm security advisories. It runs npm audit --json, stores the parsed audit output as check meta, and reports warnings or failures based on configurable severity thresholds.
Installation
You can install the package via composer:
composer require sector27-gmbh/laravel-npm-health-checks
You can publish the config file with:
php artisan vendor:publish --tag="laravel-npm-health-checks-config"
This is the contents of the published config file:
return [ 'paths' => [ base_path(), ], 'include_dev_dependencies' => false, 'warning_threshold' => 'moderate', 'failure_threshold' => 'high', 'npm_binary' => 'npm', 'timeout' => 60, ];
Usage
Register the check with Laravel Health:
use Sector27\LaravelNpmHealthChecks\NpmAuditCheck; use Spatie\Health\Facades\Health; Health::checks([ NpmAuditCheck::new(), ]);
By default, the check audits production dependencies in your application root. It returns ok without a notification message when no vulnerabilities meet the warning threshold.
You may configure the check fluently:
Health::checks([ NpmAuditCheck::new() ->atPaths([ base_path(), base_path('resources/frontend'), ]) ->includeDevDependencies() ->warnWhenSeverityIsAtLeast('moderate') ->failWhenSeverityIsAtLeast('high') ->timeout(120), ]);
Testing
composer test
Changelog
Please see CHANGELOG for more information on what has changed recently.
Security Vulnerabilities
Please review our security policy on how to report security vulnerabilities.
Credits
License
The MIT License (MIT). Please see License File for more information.
统计信息
- 总下载量: 303
- 月度下载量: 0
- 日度下载量: 0
- 收藏数: 0
- 点击次数: 2
- 依赖项目数: 0
- 推荐数: 0
其他信息
- 授权协议: MIT
- 更新时间: 2026-04-30