From aaf4803a1f5ea6397e3ec6d50400c8c837e891e5 Mon Sep 17 00:00:00 2001 From: "securityeng-bot[bot]" <219863240+securityeng-bot[bot]@users.noreply.github.com> Date: Wed, 27 May 2026 15:39:19 +0000 Subject: [PATCH 1/2] ci: enforce ignore-scripts policy for Node package managers --- .npmrc | 1 + 1 file changed, 1 insertion(+) create mode 100644 .npmrc diff --git a/.npmrc b/.npmrc new file mode 100644 index 000000000..97b895e2f --- /dev/null +++ b/.npmrc @@ -0,0 +1 @@ +ignore-scripts=true From 07e65add7a3bb0c06bc18de9cfae9d62a5a972b9 Mon Sep 17 00:00:00 2001 From: "securityeng-bot[bot]" <219863240+securityeng-bot[bot]@users.noreply.github.com> Date: Wed, 27 May 2026 15:39:21 +0000 Subject: [PATCH 2/2] ci: enforce ignore-scripts policy for Node package managers --- front-end.Dockerfile | 1 + 1 file changed, 1 insertion(+) diff --git a/front-end.Dockerfile b/front-end.Dockerfile index d93ec0bea..0f01b7daa 100644 --- a/front-end.Dockerfile +++ b/front-end.Dockerfile @@ -4,6 +4,7 @@ WORKDIR /app COPY front-end/ . +COPY .npmrc . RUN npm install EXPOSE 8505