DEV Community

Discussion on: Keep Your Javascript Projects Secure With Snyk

Collapse
 
shahednasser profile image
Shahed Nasser

I’ve used dependabot but I don’t think it’s enough. Yes it submits PRs but if the fix is not something in your dependencies directly, then it doesn’t help much. Plus, there are some issues that dependabot doesn’t catch for some reason.