Bump the production-dependencies group across 1 directory with 4 updates#142
Open
dependabot[bot] wants to merge 1 commit into
Open
Bump the production-dependencies group across 1 directory with 4 updates#142dependabot[bot] wants to merge 1 commit into
dependabot[bot] wants to merge 1 commit into
Conversation
✅ Snyk checks have passed. No issues have been found so far.
💻 Catch issues earlier using the plugins for VS Code, JetBrains IDEs, Visual Studio, and Eclipse. |
7934a95 to
40bc5ef
Compare
Up to standards ✅🟢 Issues
|
| Metric | Results |
|---|---|
| Complexity | 0 |
| Duplication | 0 |
NEW Get contextual insights on your PRs based on Codacy's metrics, along with PR and Jira context, without leaving GitHub. Enable AI reviewer
TIP This summary will be updated as you push new changes.
40bc5ef to
5e095f3
Compare
Updates the requirements on [@napi-rs/keyring](https://github.com/Brooooooklyn/keyring-node), [make-fetch-happen](https://github.com/npm/make-fetch-happen), [smol-toml](https://github.com/squirrelchat/smol-toml) and [yaml](https://github.com/eemeli/yaml) to permit the latest version. Updates `@napi-rs/keyring` to 1.3.0 - [Release notes](https://github.com/Brooooooklyn/keyring-node/releases) - [Commits](Brooooooklyn/keyring-node@v1.2.0...v1.3.0) Updates `make-fetch-happen` from 15.0.5 to 16.0.0 - [Release notes](https://github.com/npm/make-fetch-happen/releases) - [Changelog](https://github.com/npm/make-fetch-happen/blob/main/CHANGELOG.md) - [Commits](npm/make-fetch-happen@v15.0.5...v16.0.0) Updates `smol-toml` to 1.6.1 - [Release notes](https://github.com/squirrelchat/smol-toml/releases) - [Commits](squirrelchat/smol-toml@v1.6.0...v1.6.1) Updates `yaml` to 2.9.0 - [Release notes](https://github.com/eemeli/yaml/releases) - [Commits](eemeli/yaml@v2.8.2...v2.9.0) --- updated-dependencies: - dependency-name: "@napi-rs/keyring" dependency-version: 1.3.0 dependency-type: direct:production dependency-group: production-dependencies - dependency-name: make-fetch-happen dependency-version: 15.0.5 dependency-type: direct:production dependency-group: production-dependencies - dependency-name: smol-toml dependency-version: 1.6.1 dependency-type: direct:production dependency-group: production-dependencies - dependency-name: yaml dependency-version: 2.8.4 dependency-type: direct:production dependency-group: production-dependencies ... Signed-off-by: dependabot[bot] <support@github.com>
5e095f3 to
9bf3183
Compare
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Updates the requirements on @napi-rs/keyring, make-fetch-happen, smol-toml and yaml to permit the latest version.
Updates
@napi-rs/keyringto 1.3.0Release notes
Sourced from @napi-rs/keyring's releases.
Commits
e46be751.3.0da34399chore: bump up ava version to v8 (#122)477749echore: bump up Rust crate keyring to v4 (#121)e511bd2chore: bump up Yarn to v4.14.1 (#120)b759a1achore: upgrade Node version to 24 in publish CI (#119)ae5070achore: bump up cross-platform-actions/action action to v1 (#118)6b22fd2chore: bump up@oxc-node/coreversion to ^0.1.0 (#117)966a1bdchore: bump up typescript version to v6 (#116)d6611b0chore: bump up Yarn to v4.13.0 (#115)273bb8dchore: bump up ava version to v7 (#114)Updates
make-fetch-happenfrom 15.0.5 to 16.0.0Release notes
Sourced from make-fetch-happen's releases.
Changelog
Sourced from make-fetch-happen's changelog.
Commits
4217a8bchore: release 16.0.0 (#359)dcb59b6chore:@npmcli/eslint-config@7.0.04bc0cf6deps: minipass-fetch@6.0.049b3838deps: proc-log@7.0.0693a0eadeps: ssri@14.0.01b2d8cddeps: cacache@21.0.0f1e3e27deps:@npmcli/redact@5.0.06ddc227deps:@npmcli/agent@5.0.00d7ff4achore: template-oss-applyb28a204feat!: bump to new node engine rangeUpdates
smol-tomlto 1.6.1Release notes
Sourced from smol-toml's releases.
Commits
072b64fchore: version bump19a5dc7chore: upgrade dependencies and actionsf286f87fix: don't use recursion in skipVoidUpdates
yamlto 2.9.0Release notes
Sourced from yaml's releases.
Commits
ddb21b02.9.0167365bdocs: Clarify that not all errors can be avoided6eca2a7fix: Avoid calling Array.prototype.push.apply() with large source array0543cd5fix(lexer): Avoid recursive calls that may exhaust the call stackccdf7432.8.4f625789fix: Disable alias resolution with maxAliasCount:0 (#677)e1a1a77fix: Handle invalid unicode escapesa163ea0style: Satify Prettierb2a5a6cfix: Apply minFractionDigits only to decimal strings (#676)93c951bchore: Bump JSR version to v2.8.3 (#673)