chore: Bump @lavamoat/allow-scripts from 3.4.0 to 3.4.1#3744
Conversation
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
|
Warning MetaMask internal reviewing guidelines:
Ignoring alerts on:
|
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## main #3744 +/- ##
=======================================
Coverage 98.33% 98.33%
=======================================
Files 420 420
Lines 12032 12032
Branches 1874 1874
=======================================
Hits 11832 11832
Misses 200 200 ☔ View full report in Codecov by Sentry. 🚀 New features to boost your workflow:
|
0344ad8 to
1408bdd
Compare
Bumps [@lavamoat/allow-scripts](https://github.com/LavaMoat/LavaMoat/tree/HEAD/packages/allow-scripts) from 3.4.0 to 3.4.1. - [Release notes](https://github.com/LavaMoat/LavaMoat/releases) - [Changelog](https://github.com/LavaMoat/LavaMoat/blob/main/packages/allow-scripts/CHANGELOG.md) - [Commits](https://github.com/LavaMoat/LavaMoat/commits/allow-scripts-v3.4.1/packages/allow-scripts) --- updated-dependencies: - dependency-name: "@lavamoat/allow-scripts" dependency-version: 3.4.1 dependency-type: direct:development update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
0b4d0d6 to
111e1a1
Compare
|
@SocketSecurity ignore npm/lru-cache@11.2.4 Seems to be a false-positive. |
Bumps @lavamoat/allow-scripts from 3.4.0 to 3.4.1.
Release notes
Sourced from
@lavamoat/allow-scripts's releases.Changelog
Sourced from
@lavamoat/allow-scripts's changelog.Commits
3a2edd4chore: release main (#1849)5ba0f2dfix(deps): fix npm audit issues (#1853)You can trigger a rebase of this PR by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)Note
Upgrade @lavamoat/allow-scripts from 3.4.0 to 3.4.1 across the monorepo and refresh yarn.lock with related transitive updates.
@lavamoat/allow-scriptsto^3.4.1in the root and all affected workspaces (e.g.,packages/*,packages/examples/*).yarn.lock, updating numerous transitive dependencies (e.g., npmcli tooling, caching/fetch,glob/minimatch,tar, network/proxy libs).Written by Cursor Bugbot for commit 73a5cc5. This will update automatically on new commits. Configure here.