Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): update dependency eslint-config-love to v53 - autoclosed #3401

Closed
wants to merge 1 commit into from

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Jul 7, 2024

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
eslint-config-love ^43.1.0 -> ^53.0.0 age adoption passing confidence

Release Notes

mightyiam/eslint-config-love (eslint-config-love)

v53.0.0

Compare Source

⚠ BREAKING CHANGES
  • deps: exported value type declared, not inferred
chore
  • deps: update dependency typescript-eslint to v7.12.0 (0788ddc)
Build system / dependencies
  • deps: bump braces from 3.0.2 to 3.0.3 (006ca4f)
  • explicit devDep conventional-changelog-conventionalcommits (a0acf54)
Testing

v52.0.0

Compare Source

⚠ BREAKING CHANGES
  • deps: typescript-eslint minimum v7.11.0
Features
  • deps: update dependency typescript-eslint to v7.11.0 (abd1b76)
Bug fixes
  • deps: typescript-eslint minimum v7.11.0 (57f8339)

v51.0.1

Compare Source

Bug fixes

v51.0.0

Compare Source

⚠ BREAKING CHANGES
  • rules: No use of deprecated rules. Most notably, all formatting rules
    are removed. Please use a formatter, such as dprint, tsfmt and prettier.
Features
  • rules: no use of deprecated rules (6db9c2b)

v50.0.0

Compare Source

⚠ BREAKING CHANGES
  • deps: update dependency eslint-plugin-n to v17
chore
  • deps: update dependency eslint-plugin-n to v17 (3d6821a)

v49.0.0

Compare Source

⚠ BREAKING CHANGES
  • deps: drop support for eslint-plugin-n v15
chore
  • deps: drop support for eslint-plugin-n v15 (d471d9f)
Build system / dependencies
  • renovate: fix outdated typescript-eslint settings (c88d092)

v48.0.0

Compare Source

⚠ BREAKING CHANGES
Build system / dependencies
  • use semantic-release/commit-analyzer preset (790b662)
Features
Testing
  • rm redundant parserOptions test (0e49fea)

v47.0.0

Compare Source

⚠ BREAKING CHANGES
  • no longer provides env nor globals.
Features
  • do not specify env nor globals (53802ac)

v46.0.0

Compare Source

⚠ BREAKING CHANGES
  • (trying to) specify all options for rules that are used.
    Most likely will not affect you.
Features
Testing
  • exported value deep equality (c869c59)

v45.0.0

Compare Source

⚠ BREAKING CHANGES
  • all rule configs are arrays.
    This is a breaking change only if you are importing and processing the
    exported value yourself. Otherwise, this shouldn't affect you. Sorry for
    the major bump. Just being careful.
Features
  • all rule configs are arrays (9738761)
Refactoring
  • no extend from eslint-config-standard (065ce30)
Testing
  • rule todo list for eslint core & all plugins (8c84a0e)

v44.0.0

Compare Source

⚠ BREAKING CHANGES
Build system / dependencies
  • ci: "ci" job explicitly fails if test matrix fails (7dddb49)
  • ci: ci workflow if not cancelled (43b73e8)
  • ci: release from branch main (03a84a5)
  • nix: replace flake.nix with shell.nix (023d0b0)
  • shell.nix: nodejs_latest (75d18a0)
  • shell.nix: typescript-language-server (662a8f4)
Features
Testing
  • expected resolved config rules (593ac1b)

Configuration

📅 Schedule: Branch creation - "every weekend" in timezone Europe/Paris, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate. View repository job log here.

@renovate renovate bot added the dependencies Pull requests that update a dependency file label Jul 7, 2024
Copy link

sonarqubecloud bot commented Jul 7, 2024

Copy link

New and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/@npmcli/[email protected] filesystem 0 26.5 kB lukekarrys
npm/@npmcli/[email protected] filesystem Transitive: environment +2 67.9 kB npm-cli-ops
npm/@npmcli/[email protected] filesystem +2 26.1 kB npm-cli-ops
npm/@npmcli/[email protected] filesystem 0 1.87 kB lukekarrys
npm/@npmcli/[email protected] environment, shell Transitive: filesystem +2 62.3 kB npm-cli-ops
npm/@octokit/[email protected] None +1 4.45 MB octokitbot
npm/[email protected] filesystem +4 90.1 kB npm-cli-ops
npm/[email protected] None 0 14.5 kB andyburke
npm/[email protected] None 0 15 kB doowb
npm/[email protected] eval, filesystem 0 143 kB mde
npm/[email protected] environment 0 197 kB jonschlinkert
npm/[email protected] None +1 482 kB isaacs
npm/[email protected] None 0 26.6 kB npm-cli-ops
npm/[email protected] None 0 51.5 kB kael
npm/[email protected] None 0 4.66 kB sindresorhus
npm/[email protected] None +1 123 kB sboudrias
npm/[email protected] None 0 9.16 kB trysound
npm/[email protected] None 0 78.5 kB simenb
npm/[email protected] None 0 9.94 kB npm-cli-ops
npm/[email protected] None 0 22.8 kB doowb
npm/[email protected] filesystem 0 9.91 kB sindresorhus
npm/[email protected] network 0 5.29 kB dougwilson
npm/[email protected] None +1 40.9 kB isaacs
npm/[email protected] None +2 69.8 kB isaacs
npm/[email protected] None 0 6.03 kB sindresorhus
npm/[email protected] network 0 152 kB endless
npm/[email protected] None 0 26.2 kB npm-cli-ops
npm/[email protected] None 0 28.2 kB npm-cli-ops
npm/[email protected] None 0 6.21 kB npm-cli-ops
npm/[email protected] None 0 19.1 kB npm-cli-ops
npm/[email protected] filesystem 0 22.2 kB npm-cli-ops
npm/[email protected] None +1 19.9 kB npm-cli-ops
npm/[email protected] environment, filesystem, network +1 59 kB npm-cli-ops
npm/[email protected] environment, filesystem, network, shell, unsafe +3 4.66 MB nrwl-jason
npm/[email protected] None 0 8.69 kB sindresorhus
npm/[email protected] None 0 6.14 kB sindresorhus
npm/[email protected] environment, filesystem, network +1 87.6 kB npm-cli-ops
npm/[email protected] None 0 186 kB evilebottnawi
npm/[email protected] None 0 12.3 kB npm-cli-ops
npm/[email protected] filesystem 0 5.16 kB lukekarrys
npm/[email protected] filesystem +1 12.2 kB lukekarrys
npm/[email protected] environment, filesystem 0 284 kB isaacs
npm/[email protected] None 0 3.51 kB sindresorhus
npm/[email protected] None 0 38.7 kB npm-cli-ops
npm/[email protected] None 0 4.03 kB sindresorhus
npm/[email protected] filesystem 0 16.4 kB rmg
npm/[email protected] environment, filesystem +2 196 kB isaacs
npm/[email protected] filesystem 0 52.9 kB raszi
npm/[email protected] None 0 168 kB broofa
npm/[email protected] None 0 16.6 kB kemitchell
npm/[email protected] unsafe 0 7.77 kB npm-cli-ops
npm/[email protected] None 0 14.2 kB timoxley
npm/[email protected] None 0 4.47 kB iarna
npm/[email protected] filesystem 0 12.2 kB npm-cli-ops
npm/[email protected] environment, filesystem 0 128 kB oss-bot

🚮 Removed packages: npm/@jridgewell/[email protected], npm/@popperjs/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected], npm/[email protected]

View full report↗︎

Copy link

🚨 Potential security issues detected. Learn more about Socket for GitHub ↗︎

To accept the risk, merge this PR and you will not be notified again.

Alert Package NoteCI
Install scripts npm/[email protected]
  • Install script: postinstall
  • Source: node ./bin/post-install
🚫

View full report↗︎

Next steps

What is an install script?

Install scripts are run when the package is installed. The majority of malware in npm is hidden in install scripts.

Packages should not be running non-essential scripts during install and there are often solutions to problems people solve with install scripts that can be run at publish time instead.

Take a deeper look at the dependency

Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support [AT] socket [DOT] dev.

Remove the package

If you happen to install a dependency that Socket reports as Known Malware you should immediately remove it and select a different dependency. For other alert types, you may may wish to investigate alternative packages or consider if there are other ways to mitigate the specific risk posed by the dependency.

Mark a package as acceptable risk

To ignore an alert, reply with a comment starting with @SocketSecurity ignore followed by a space separated list of ecosystem/package-name@version specifiers. e.g. @SocketSecurity ignore npm/[email protected] or ignore all packages with @SocketSecurity ignore-all

@codecov-commenter
Copy link

⚠️ Please install the 'codecov app svg image' to ensure uploads and comments are reliably processed by Codecov.

Codecov Report

All modified and coverable lines are covered by tests ✅

Project coverage is 66.43%. Comparing base (89ceabe) to head (f95c7c9).

❗ Your organization needs to install the Codecov GitHub app to enable full functionality.

Additional details and impacted files

Impacted file tree graph

@@           Coverage Diff           @@
##           master    #3401   +/-   ##
=======================================
  Coverage   66.43%   66.43%           
=======================================
  Files         912      912           
  Lines       15140    15140           
  Branches     2144     2144           
=======================================
  Hits        10059    10059           
  Misses       4922     4922           
  Partials      159      159           

Continue to review full report in Codecov by Sentry.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update 89ceabe...f95c7c9. Read the comment docs.

@renovate renovate bot changed the title chore(deps): update dependency eslint-config-love to v53 chore(deps): update dependency eslint-config-love to v53 - autoclosed Jul 8, 2024
@renovate renovate bot closed this Jul 8, 2024
@renovate renovate bot deleted the renovate/eslint-config-love-53.x branch July 8, 2024 16:34
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant