#composer sets now by default the "security-blocking" so on old projects you may need to by-pass it to bring back the life to your pipelines :) Scared the $#!+ out of me a month ago... as we just had to urgently move from bower-assets to NPM assets on an old #yii project just a month before that as it was blocking ALL deployments :)
How do you guys get this kind of info "upfront" without following a gazillion of projects manually?




