# Alternative npm package for elm-json without vulnerabilities

**URL:** <https://discourse.elm-lang.org/t/alternative-npm-package-for-elm-json-without-vulnerabilities/9247>\
**Category:** Show and Tell\
**Created:** [July 26, 2023, 5:39pm UTC](https://discourse.elm-lang.org/t/alternative-npm-package-for-elm-json-without-vulnerabilities/9247 "2023-07-26T17:39:50Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![lydell](https://yyz1.discourse-cdn.com/flex035/user_avatar/discourse.elm-lang.org/lydell/32/178_2.png) [@lydell](https://discourse.elm-lang.org/u/lydell)\
**Post date:** [July 26, 2023, 5:39pm UTC](https://discourse.elm-lang.org/t/alternative-npm-package-for-elm-json-without-vulnerabilities/9247/1 "2023-07-26T17:39:50Z")

</div>

I just published `@lydell/elm-json` on npm!

```auto
npm install @lydell/elm-json

```

My alternative npm package contains the _same binaries_ as the official package installs. The only difference is that this package has no dependencies. Which means no vulnerability warnings, and much lighter installs!

Here’s the PR for the official package: [Free the npm package from third party dependencies by lydell · Pull Request #51 · zwilias/elm-json · GitHub](https://github.com/zwilias/elm-json/pull/51)

elm-format and elm-test-rs already use this npm package setup. For Elm itself, there’s `@lydell/elm`. And now the suite is complete with `@lydell/elm-json`!

---

<div class="post-metadata">

**Author:** ![system](https://canada1.discourse-cdn.com/flex035/uploads/elm_lang/original/1X/50a05e53677a2c3b47776d7abd0f113eb50193a1.png) [@system](https://discourse.elm-lang.org/u/system)\
**Post date:** [August 5, 2023, 5:40pm UTC](https://discourse.elm-lang.org/t/alternative-npm-package-for-elm-json-without-vulnerabilities/9247/2 "2023-08-05T17:40:18Z")

</div>

This topic was automatically closed 10 days after the last reply. New replies are no longer allowed.
