From 8864a83d99eb83087df10af17b86eb2794f73bf6 Mon Sep 17 00:00:00 2001 From: "securityeng-bot[bot]" <219863240+securityeng-bot[bot]@users.noreply.github.com> Date: Wed, 27 May 2026 19:34:39 +0000 Subject: [PATCH] ci: enforce ignore-scripts policy for Node package managers --- .yarnrc.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/.yarnrc.yml b/.yarnrc.yml index b12166f..9db7d23 100644 --- a/.yarnrc.yml +++ b/.yarnrc.yml @@ -17,3 +17,4 @@ logFilters: nodeLinker: node-modules npmAuthToken: "${NODE_AUTH_TOKEN:-fallback}" +enableScripts: false