@@ -13,7 +13,7 @@ import { confirm } from '@socketsecurity/registry/lib/prompts'
13
13
import { Spinner } from '@socketsecurity/registry/lib/spinner'
14
14
15
15
import { getPackagesToQueryFromDiff } from './diff'
16
- import { kCtorArgs , kRiskyReify } from './index'
16
+ import { kRiskyReify } from './index'
17
17
import constants from '../../../../constants'
18
18
import {
19
19
batchScan ,
@@ -24,7 +24,6 @@ import { uxLookup } from '../../../../utils/alert/rules'
24
24
import { ColorOrMarkdown } from '../../../../utils/color-or-markdown'
25
25
import { debugLog } from '../../../../utils/debug'
26
26
import { getSocketDevPackageOverviewUrl } from '../../../../utils/socket-url'
27
- import { pacotePath } from '../../../npm-paths'
28
27
import { Edge , SafeEdge } from '../edge'
29
28
30
29
import type { PackageDetail } from './diff'
@@ -43,8 +42,6 @@ type SocketPackageAlert = {
43
42
raw ?: any
44
43
}
45
44
46
- const pacote : typeof import ( 'pacote' ) = require ( pacotePath )
47
-
48
45
const {
49
46
LOOP_SENTINEL ,
50
47
NPM ,
@@ -107,7 +104,7 @@ type GetPackageAlertsOptions = {
107
104
}
108
105
109
106
async function getPackagesAlerts (
110
- safeArb : SafeArborist ,
107
+ _safeArb : SafeArborist ,
111
108
details : PackageDetail [ ] ,
112
109
options ?: GetPackageAlertsOptions
113
110
) : Promise < SocketPackageAlert [ ] > {
@@ -138,7 +135,6 @@ async function getPackagesAlerts(
138
135
const name = resolvePackageName ( < any > artifact )
139
136
const id = `${ name } @${ artifact . version } `
140
137
141
- let blocked = false
142
138
let displayWarning = false
143
139
let alerts : SocketPackageAlert [ ] = [ ]
144
140
for ( const alert of artifact . alerts ) {
@@ -147,9 +143,6 @@ async function getPackagesAlerts(
147
143
package : { name, version } ,
148
144
alert : { type : alert . type }
149
145
} )
150
- if ( ux . block ) {
151
- blocked = true
152
- }
153
146
if ( ux . display && output ) {
154
147
displayWarning = true
155
148
}
@@ -189,18 +182,6 @@ async function getPackagesAlerts(
189
182
}
190
183
}
191
184
}
192
- if ( ! blocked ) {
193
- if ( details . find ( d => d . pkgid === id ) ) {
194
- await pacote . tarball . stream (
195
- id ,
196
- stream => {
197
- stream . resume ( )
198
- return ( stream as any ) . promise ( )
199
- } ,
200
- { ...( safeArb as any ) [ kCtorArgs ] [ 0 ] }
201
- )
202
- }
203
- }
204
185
if ( displayWarning && spinner ) {
205
186
spinner . stop (
206
187
`(socket) ${ formatter . hyperlink ( id , getSocketDevPackageOverviewUrl ( NPM , name , version ) ) } contains risks:`
0 commit comments