mirror of
https://github.com/safedep/pmg.git
synced 2026-08-03 07:24:09 +02:00
* introduce a persistent config * add tests and refactor config creation * update config handling and add support for removing config * add support to skip suspicious pkgs marked as trusted * add support for config dir Env & unexport functions * small fixes * add assert for dir * fix tests * fix shell source line & trusted pkgs parsing * fix flag inconsistency * update config to read on each invocation and create if does not exist * fix flags value being overridden * remove redundant func call * modify trusted pkg check to be config bound * modify RemoveConfig to rm files & not dir. add tests for paths.go * add versions for package for e2e * modify tests to reset config * fix: Simplify config persistence * fix: Misc comments * fix: Misc fix * fix: Do not overwrite config file if exists * fix: Do not overwrite config file if exists * fix: Config cobra command should override and not replace * fix: Create dir before writing config template * fix: Create dir before writing config template * fix: Misc refactoring * test: Add test for is trusted package version * Update cmd/setup/setup.go Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Signed-off-by: Abhisek Datta <abhisek.datta@gmail.com> * Update config/config.go Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Signed-off-by: Abhisek Datta <abhisek.datta@gmail.com> * Apply suggestion from @Copilot Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com> Signed-off-by: Abhisek Datta <abhisek.datta@gmail.com> * fix: Remove unused constant in config * fix: Resolve conflict with event logger * docs: Add doc for eventlogger.Logger interface * test: Add E2E for config file creation * fix: Code review fixes --------- Signed-off-by: Abhisek Datta <abhisek.datta@gmail.com> Co-authored-by: Sahilb315 <bansalsahil315@gmail.com> Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
56 lines
1.6 KiB
Go
56 lines
1.6 KiB
Go
package npm
|
|
|
|
import (
|
|
"context"
|
|
"fmt"
|
|
|
|
"github.com/safedep/pmg/config"
|
|
"github.com/safedep/pmg/internal/analytics"
|
|
"github.com/safedep/pmg/internal/flows"
|
|
"github.com/safedep/pmg/internal/ui"
|
|
"github.com/safedep/pmg/packagemanager"
|
|
"github.com/spf13/cobra"
|
|
)
|
|
|
|
func NewYarnCommand() *cobra.Command {
|
|
return &cobra.Command{
|
|
Use: "yarn [action] [package]",
|
|
Short: "Guard yarn package manager",
|
|
DisableFlagParsing: true,
|
|
RunE: func(cmd *cobra.Command, args []string) error {
|
|
err := executeYarnFlow(cmd.Context(), args)
|
|
if err != nil {
|
|
ui.ErrorExit(err)
|
|
}
|
|
return nil
|
|
},
|
|
}
|
|
}
|
|
|
|
func executeYarnFlow(ctx context.Context, args []string) error {
|
|
analytics.TrackCommandYarn()
|
|
|
|
packageManager, err := packagemanager.NewNpmPackageManager(packagemanager.DefaultYarnPackageManagerConfig())
|
|
if err != nil {
|
|
return fmt.Errorf("failed to create yarn package manager proxy: %w", err)
|
|
}
|
|
|
|
config := config.Get()
|
|
parsedCommand, err := packageManager.ParseCommand(args)
|
|
if err != nil {
|
|
return fmt.Errorf("failed to parse command: %w", err)
|
|
}
|
|
|
|
packageResolverConfig := packagemanager.NewDefaultNpmDependencyResolverConfig()
|
|
packageResolverConfig.IncludeTransitiveDependencies = config.Config.Transitive
|
|
packageResolverConfig.TransitiveDepth = config.Config.TransitiveDepth
|
|
packageResolverConfig.IncludeDevDependencies = config.Config.IncludeDevDependencies
|
|
|
|
packageResolver, err := packagemanager.NewNpmDependencyResolver(packageResolverConfig)
|
|
if err != nil {
|
|
return fmt.Errorf("failed to create dependency resolver: %w", err)
|
|
}
|
|
|
|
return flows.Common(packageManager, packageResolver).Run(ctx, args, parsedCommand)
|
|
}
|