External comments related to the display:
- Sort by CVSS score so most important things are at the top.
- npm audit output seems duplicative of OSV table? Don't make devs read the same information twice, put everything in one table if possible.
- npm list output doesn't seem useful, can't a developer just do that themselves when they go in to try to fix what's wrong? Again, information overload, unless it's vital to put that info in the PR, leave it out.
External comments related to the display: