build(deps): bump sigstore and ls-engines#922
Conversation
|
Review the following changes in direct dependencies. Learn more about Socket for GitHub.
|
|
Warning Review the following alerts detected in dependencies. According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.
|
1f8853f to
65295a5
Compare
Bumps [sigstore](https://github.com/sigstore/sigstore-js) to 4.1.1 and updates ancestor dependency [ls-engines](https://github.com/ljharb/ls-engines). These dependencies need to be updated together. Updates `sigstore` from 1.9.0 to 4.1.1 - [Release notes](https://github.com/sigstore/sigstore-js/releases) - [Commits](https://github.com/sigstore/sigstore-js/compare/sigstore@1.9.0...sigstore@4.1.1) Updates `ls-engines` from 0.9.4 to 0.10.1 - [Changelog](https://github.com/ljharb/ls-engines/blob/main/CHANGELOG.md) - [Commits](ljharb/ls-engines@v0.9.4...v0.10.1) --- updated-dependencies: - dependency-name: ls-engines dependency-version: 0.10.1 dependency-type: direct:development - dependency-name: sigstore dependency-version: 4.1.1 dependency-type: indirect ... Signed-off-by: dependabot[bot] <support@github.com>
65295a5 to
0ee7491
Compare
Bumps sigstore to 4.1.1 and updates ancestor dependency ls-engines. These dependencies need to be updated together.
Updates
sigstorefrom 1.9.0 to 4.1.1Release notes
Sourced from sigstore's releases.
... (truncated)
Commits
c1dc7d4Version Packages (#1607)f074710reject integratedTime w/o inclusionPromise (#1659)7845532OID certificate extension verification (#1658)b5aa4f1proper utf-8 encoding in DSSE PAE (#1657)c7a34e0clarify cert ID matching (#1656)9858bd7Upgrade TypeScript to 6.x (#1655)8cef20dbump qs from 6.15.1 to 6.15.2 (#1654)aca341bbump@sigstore/mockdeps (#1653)0855acaPin all@swc/coreplatform binaries as optionalDependencies (#1652)44a374dPin all@swc/coreplatform binaries as optionalDependencies (#1650)Maintainer changes
This version was pushed to npm by GitHub Actions, a new releaser for sigstore since your current version.
Updates
ls-enginesfrom 0.9.4 to 0.10.1Changelog
Sourced from ls-engines's changelog.
Commits
5c0e7e3v0.10.1ae9bf18[meta] exclude some files from the publish301a113[Fix] use valid subpath imports specifier for node <24523e825[eslint] fix errors3c8a241[Dev Deps] updateeslint0ceb848[actions] update workflowsafa5e63[Deps] updatepargs,semver7366498[Tests] updatetape12170a9[Deps] updatepargs13ff435[New] add types