Skip to content

Conversation

@laemtl
Copy link

@laemtl laemtl commented Mar 24, 2023

First, thanks for this amazing library!
We are using differenceequationsignal1d in our LORIS EEG visualization component and have recently dealing with more than 40 security alerts for vulnerabilities introduced by outdated dependencies from differenceequationsignal1d.

differenceequationsignal1d declares an old version of npm-check-updates as a dependency which requires more than 30 other dependencies that causes those issues. I propose to remove the dependency since npm-check-updates is a tool that can be installed and run globally.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant