Loading...
Loading...
Compare original and translation side by side
undefinedundefinedundefinedundefinedundefinedundefinedundefinedundefinedundefinedundefinedundefinedundefined1. Detect package manager (npm, pip, etc.)
2. Run security audit command
3. Parse vulnerability results
4. Categorize by severity
5. Suggest fixes
6. Flag breaking changes1. 检测包管理器(npm、pip等)
2. 运行安全审计命令
3. 解析漏洞结果
4. 按严重程度分类
5. 建议修复方案
6. 标记破坏性变更undefinedundefinedundefinedundefinedundefinedundefinedundefinedundefinedundefinedundefinedundefinedundefinedVulnerable: request@2.88.0 (deprecated)
Alternative: axios or node-fetch
Migration guide: [link]存在漏洞:request@2.88.0(已弃用)
替代方案:axios 或 node-fetch
迁移指南:[链接]undefinedundefinedundefinedundefinedundefinedundefinedundefinedundefined{
"network": {
"allowedDomains": [
"registry.npmjs.org",
"pypi.org",
"rubygems.org",
"repo.maven.apache.org"
]
}
}{
"network": {
"allowedDomains": [
"registry.npmjs.org",
"pypi.org",
"rubygems.org",
"repo.maven.apache.org"
]
}
}⚠️ License issue: GPL-3.0 package in commercial project
📦 Package: some-gpl-package@1.0.0
📖 GPL-3.0 requires source code disclosure
🔧 Consider: Find MIT/Apache-2.0 alternative⚠️ 许可证问题:商业项目中使用GPL-3.0协议的包
📦 包:some-gpl-package@1.0.0
📖 GPL-3.0要求公开源代码
🔧 建议:寻找MIT/Apache-2.0协议的替代包