-
Notifications
You must be signed in to change notification settings - Fork 168
Closed
Description
Description
This package now pulls its auth0 dependency from a branch in a git project (git://github.com/auth0/node-auth0.git#actionsManager), which makes it unsuitable for production use.
See: https://github.com/auth0/auth0-deploy-cli/blob/master/package.json#L30
This branch could change making different installations of this package behave differently (which is an undesirable trait for production use). I understand if this was an alpha version of the library, but does not feel like this should be done in release versions.
Reproduction
I initially discovered this because our build environment pulls dependencies through a proxy, and it was blocking the installation of this package because we have not allowed the port that git:// uses.
Environment
- Version of this library used: 5.4.0
jacques-, alextriaca, andywaugh, brad-fitzwater, janslow and 4 more
Metadata
Metadata
Assignees
Labels
No labels
