Supply chain attacks on NPM libs are a real issue. Using other tools like Snyk are needed Links Supply chain attacks