Triage npm install scripts for the npm v12 allowlist — reads what every preinstall, install and postinstall actually does, offline and deterministically.
-
Updated
Aug 11, 2026 - TypeScript
Triage npm install scripts for the npm v12 allowlist — reads what every preinstall, install and postinstall actually does, offline and deterministically.
See what a lockfile's install scripts actually run, then generate an npm/pnpm/Yarn/Bun allowlist.
Audit which packages actually execute code at install time, including implicit node-gyp builds
Add a description, image, and links to the install-scripts topic page so that developers can more easily learn about it.
To associate your repository with the install-scripts topic, visit your repo's landing page and select "manage topics."