Releases: NodeSecure/npm-security-fetcher
Releases · NodeSecure/npm-security-fetcher
v3.0.0
What's Changed
- [Snyk] Upgrade @nodesecure/scanner from 3.7.0 to 3.8.0 by @snyk-bot in #23
- [Snyk] Upgrade pacote from 15.0.4 to 15.0.6 by @snyk-bot in #22
- docs: add ossf scorecard badge by @fraxken in #24
- Adding security policy and updating badges by @fabnguess in #26
- [Snyk] Upgrade pacote from 15.0.6 to 15.0.8 by @snyk-bot in #25
- chore(deps): bump json5 from 2.2.1 to 2.2.3 by @dependabot in #27
- Add dependabot yml configuration by @fabnguess in #28
- chore(deps): bump @slimio/is from 1.5.1 to 2.0.0 by @dependabot in #33
- chore(deps): bump ossf/scorecard-action from 2.0.6 to 2.1.2 by @dependabot in #32
- chore(deps): bump actions/checkout from 3.1.0 to 3.3.0 by @dependabot in #31
- chore(deps): bump github/codeql-action from 2.1.27 to 2.1.39 by @dependabot in #30
- chore(deps): bump actions/upload-artifact from 3.1.0 to 3.1.2 by @dependabot in #29
- chore(StepSecurity): Apply security best practices by @step-security-bot in #34
- Update dependabot frequency by @fabnguess in #41
- docs: add fabnguess as a contributor for maintenance by @allcontributors in #43
- chore(deps): bump github/codeql-action from 2.1.39 to 2.2.5 by @dependabot in #42
- chore(deps): bump step-security/harden-runner from 2.1.0 to 2.2.0 by @dependabot in #40
- drop support for Node 16 by @fabnguess in #65
- chore: using dependabot groups by @fabnguess in #68
- chore: Update copyright by @fabnguess in #67
- chore(deps): bump the github-actions group with 3 updates by @dependabot in #69
- [Snyk] Fix for 1 vulnerabilities by @fraxken in #66
- chore(deps-dev): bump the development-dependencies group with 3 updates by @dependabot in #73
- chore(deps): bump the dependencies group with 1 update by @dependabot in #74
- chore(deps): bump the github-actions group across 1 directory with 5 updates by @dependabot in #84
- chore: update dependencies by @fraxken in #85
- Update Node.js versions to v20 and v22 by @fabnguess in #95
- chore(deps): bump the github-actions group across 1 directory with 5 updates by @dependabot in #94
- chore(deps): bump the dependencies group across 1 directory with 2 updates by @dependabot in #93
- Update eslint tsconfig by @fraxken in #96
- Update copyright by @fabnguess in #97
- chore(deps): bump the github-actions group across 1 directory with 4 updates by @dependabot in #100
- chore: update dependencies & upgrade to Node.js v22 by @fraxken in #101
- chore(deps): bump @nodesecure/js-x-ray from 8.2.0 to 9.0.0 in the dependencies group by @dependabot in #103
- chore(deps): bump the github-actions group with 4 updates by @dependabot in #102
- chore(deps-dev): bump @types/node from 22.15.31 to 24.0.1 in the development-dependencies group by @dependabot in #104
New Contributors
- @snyk-bot made their first contribution in #23
- @fraxken made their first contribution in #24
- @fabnguess made their first contribution in #26
- @dependabot made their first contribution in #27
- @step-security-bot made their first contribution in #34
Full Changelog: v2.0.0...v3.0.0
v2.0.0
What's Changed
- feat: All contrib by @Rossb0b in #1
- docs: add fraxken as a contributor for code, doc, review, security, bug by @allcontributors in #3
- docs: add Rossb0b as a contributor for doc by @allcontributors in #4
- chore: add contribution guideline by @antoine-coulon in #18
- fix: remove Node.js WG security disclosure program by @halcin in #20
- chore: migrate to typescript by @BlandineRdl in #16
- docs: add BlandineRdl as a contributor for code by @allcontributors in #21
New Contributors
- @Rossb0b made their first contribution in #1
- @antoine-coulon made their first contribution in #18
- @halcin made their first contribution in #20
- @BlandineRdl made their first contribution in #16
Full Changelog: https://github.com/NodeSecure/npm-security-fetcher/commits/v2.0.0