NPM malicious package


according to Over 3 Dozen Data-Stealing Malicious npm Packages Found Targeting Developers, some NPM package are corrupts.

I’m wonder if Grafana uses NPM for the frontend and if yes how could we check if these corrupts packages are included or not ?

Thanks for help

git clone grafana