This repo includes many security mistakes that should be discovered by SAST tools.
package-lock.jsonincludes Node packages with known vulnerabilitiesGemfile.lockincludes dependencies that are listed as insecure in the ruby-advisory-dbindex.jsincludes code meant to trigger the SonarJS vulnerability rules