Currently, when running npm audit
in a project, it checks both the dependencies
and the devDependencies
. I am looking for a way to only check the dependencies
. Is there currently a way to do so?
Description. The audit command submits a description of the dependencies configured in your project to your default registry and asks for a report of known vulnerabilities. If any vulnerabilities are found, then the impact and appropriate remediation will be calculated.
You can skip auditing at all by adding the --no-audit flag.
Support for --production
flag was released in npm 6.10.0
https://github.com/npm/cli/pull/202
npm audit --production
If you love us? You can donate to us via Paypal or buy me a coffee so we can maintain and grow! Thank you!
Donate Us With