-
Notifications
You must be signed in to change notification settings - Fork 41
Open
Description
Bun's new lockfile, as of version 1.2, is JSONC instead of binary. It would be cool to be able to convert from bun.lock to package-lock.json.
https://bun.sh/blog/bun-v1.2#introducing-bun-lock
Bun currently doesn't have a bun audit (although may soon) so one workaround would be converting the lockfile first and then using npm audit. Bun does support creating a yarn.lock file but it seems to generate an older version and I've had issues with it working with yarn audit (particularly due to the way it handles overrides - see this comment, although that's from before the jsonc lockfile so it may have changed).
Regardless of audit support, it seems like it'd be a nice addition to synp to be able to go to/from bun.lock
MulverineX
Metadata
Metadata
Assignees
Labels
No labels