npm Community Forum (Archive)

The npm community forum has been discontinued.

To discuss usage of npm, visit the GitHub Support Community.

NPM Audit Fails with Aliased Packages

What I Wanted to Do

Run npm audit with aliased packages and get the audit results

What Happened Instead

No audit results

Reproduction Steps

Set up a package.json with the following dependency:
“jquery”: “~2.2.4”,

Run NPM audit and observe the results. Now change that dependency to the following:

"jquery_v2": "npm:jquery@~2.2.4",

Run NPM audit and observe that there are no results :frowning:

Platform Info

$ npm --versions
  npm: '6.11.3',
  ares: '1.15.0',
  brotli: '1.0.7',
  cldr: '35.1',
  http_parser: '2.8.0',
  icu: '64.2',
  llhttp: '1.1.4',
  modules: '72',
  napi: '4',
  nghttp2: '1.39.2',
  node: '12.10.0',
  openssl: '1.1.1c',
  tz: '2019a',
  unicode: '12.1',
  uv: '1.31.0',
  v8: '7.6.303.29-node.16',
  zlib: '1.2.11'
$ node -p process.platform