CI Perf Lint

npm-ci-over-npm-install

Detects workflows that use npm install instead of npm ci when package-lock.json exists in the repository.

Why this rule exists:

Current MVP heuristic:

Conservative bias:

Typical remediation: