This is nice https://giraffesecurity.dev/posts/dependabot-confusion/
TL;DR: if you have internal package name for npm packag… : http://social.anantshri.info/@anant/statuses/01GZTTS4PZ8KJWR322DWWRFWD5
This is nice https://giraffesecurity.dev/posts/dependabot-confusion/
TL;DR: if you have internal package name for npm packag… : http://social.anantshri.info/@anant/statuses/01GZTTS4PZ8KJWR322DWWRFWD5