-
-
Notifications
You must be signed in to change notification settings - Fork 8
Open
Description
First, on October 26 we identified an issue caused by routine maintenance of one of our publicly available npm services. During maintenance on the database that powers the public npm replica at replicate.npmjs.com, records were created that could expose the names of private packages.
So this package might be indexing private repos. It is sensible to..
- Audit the packages and remove the from the history.
- Introduce code to ensure that private repos are never added to the index
Metadata
Metadata
Assignees
Labels
No labels