Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

build: bump static site Javascript dependencies #96

Merged
merged 1 commit into from
Jan 29, 2024

Conversation

phylum-bot
Copy link
Contributor

Bump dependencies in site/package-lock.json for all SemVer-compatible updates.

@phylum-bot phylum-bot requested a review from a team as a code owner January 29, 2024 14:38
@cd-work
Copy link
Contributor

cd-work commented Jan 29, 2024

Phylum analysis results:

Phylum Supply Chain Risk Analysis — FAILURE

[npm] [email protected]
  [AUT] Author of [email protected] is using a disposable email domain

The only affected package is unrelated to this upgrade.

@maxrake
Copy link
Contributor

maxrake commented Jan 29, 2024

The only affected package is unrelated to this upgrade.

That package was reviewed and suppressed last month:

image

The current changes in this PR were analyzed manually and appear fine, with the exception of a few packages that are still processing:

image

I'll keep an eye on the progress of those packages and report back here when they are done.

@cd-work cd-work merged commit c0c77cd into main Jan 29, 2024
1 check passed
@cd-work cd-work deleted the workflow-auto-updates branch January 29, 2024 18:35
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants