SocialGouv / domifa

Faciliter l'accès aux droits pour les personnes sans domicile stable, en simplifiant la gestion de la domiciliation
https://domifa.fabrique.social.gouv.fr
Apache License 2.0
14 stars 10 forks source link

fix(deps): update dependency uuid to v10 #3347

Closed renovate[bot] closed 2 weeks ago

renovate[bot] commented 2 weeks ago

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
uuid ^9.0.1 -> ^10.0.0 age adoption passing confidence

Release Notes

uuidjs/uuid (uuid) ### [`v10.0.0`](https://togithub.com/uuidjs/uuid/blob/HEAD/CHANGELOG.md#1000-2024-06-07) [Compare Source](https://togithub.com/uuidjs/uuid/compare/v9.0.1...v10.0.0) ##### ⚠ BREAKING CHANGES - update node support (drop node@12, node@14, add node@20) ([#​750](https://togithub.com/uuidjs/uuid/issues/750)) ##### Features - support support rfc9562 MAX uuid (new in RFC9562) ([#​714](https://togithub.com/uuidjs/uuid/issues/714)) ([0385cd3](https://togithub.com/uuidjs/uuid/commit/0385cd3f18ae9920678b2849932fa7a9d9aee7d0)) - support rfc9562 v6 uuids ([#​754](https://togithub.com/uuidjs/uuid/issues/754)) ([c4ed13e](https://togithub.com/uuidjs/uuid/commit/c4ed13e7159d87c9e42a349bdd9dc955f1af46b6)) - support rfc9562 v7 uuids ([#​681](https://togithub.com/uuidjs/uuid/issues/681)) ([db76a12](https://togithub.com/uuidjs/uuid/commit/db76a1284760c441438f50a57924b322dae08891)) - update node support matrix (only support node 16-20) ([#​750](https://togithub.com/uuidjs/uuid/issues/750)) ([883b163](https://togithub.com/uuidjs/uuid/commit/883b163b9ab9d6655bfbd8a35e61a3c71674dfe1)) - support rfc9562 v8 uuids ([#​759](https://togithub.com/uuidjs/uuid/issues/759)) ([35a5342](https://togithub.com/uuidjs/uuid/commit/35a53428202657e402e6b4aa68f56c08194541bf)) ##### Bug Fixes - revert "perf: remove superfluous call to toLowerCase ([#​677](https://togithub.com/uuidjs/uuid/issues/677))" ([#​738](https://togithub.com/uuidjs/uuid/issues/738)) ([e267b90](https://togithub.com/uuidjs/uuid/commit/e267b9073df1d0ce119ee53c0487fe76acb2be37))

Configuration

📅 Schedule: Branch creation - "every weekend" in timezone Europe/Paris, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.

codecov-commenter commented 2 weeks ago

Codecov Report

All modified and coverable lines are covered by tests :white_check_mark:

Project coverage is 66.49%. Comparing base (e5dbf5a) to head (0564610).

:exclamation: Current head 0564610 differs from pull request most recent head 0eea8fa

Please upload reports for the commit 0eea8fa to get more accurate results.

:exclamation: Your organization needs to install the Codecov GitHub app to enable full functionality.

Additional details and impacted files [![Impacted file tree graph](https://app.codecov.io/gh/SocialGouv/domifa/pull/3347/graphs/tree.svg?width=650&height=150&src=pr&token=ydhKiPXRFO&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=SocialGouv)](https://app.codecov.io/gh/SocialGouv/domifa/pull/3347?src=pr&el=tree&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=SocialGouv) ```diff @@ Coverage Diff @@ ## master #3347 +/- ## ========================================== + Coverage 66.44% 66.49% +0.05% ========================================== Files 907 905 -2 Lines 15093 15074 -19 Branches 2206 2197 -9 ========================================== - Hits 10029 10024 -5 - Misses 4876 4877 +1 + Partials 188 173 -15 ``` [see 130 files with indirect coverage changes](https://app.codecov.io/gh/SocialGouv/domifa/pull/3347/indirect-changes?src=pr&el=tree-more&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=SocialGouv) ------ [Continue to review full report in Codecov by Sentry](https://app.codecov.io/gh/SocialGouv/domifa/pull/3347?dropdown=coverage&src=pr&el=continue&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=SocialGouv). > **Legend** - [Click here to learn more](https://docs.codecov.io/docs/codecov-delta?utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=SocialGouv) > `Δ = absolute (impact)`, `ø = not affected`, `? = missing data` > Powered by [Codecov](https://app.codecov.io/gh/SocialGouv/domifa/pull/3347?dropdown=coverage&src=pr&el=footer&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=SocialGouv). Last update [e5dbf5a...0eea8fa](https://app.codecov.io/gh/SocialGouv/domifa/pull/3347?dropdown=coverage&src=pr&el=lastupdated&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=SocialGouv). Read the [comment docs](https://docs.codecov.io/docs/pull-request-comments?utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=SocialGouv).
socket-security[bot] commented 2 weeks ago

New and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/@aashutoshrathi/word-wrap@1.2.6 None 0 10.9 kB aashutoshrathi
npm/@ampproject/remapping@2.2.1 None 0 76 kB jridgewell
npm/@angular-devkit/architect@0.1602.14 None 0 430 kB google-wombot
npm/@angular-devkit/build-angular@16.2.14 environment, filesystem, network, shell, unsafe Transitive: eval +99 67.5 MB google-wombot
npm/@angular-devkit/core@16.2.14 eval, network Transitive: filesystem +2 1.13 MB google-wombot
npm/@angular/compiler-cli@16.2.12 Transitive: environment, filesystem, unsafe +7 3.58 MB google-wombot
npm/@angular/compiler@16.2.12 None 0 8.09 MB google-wombot
npm/@babel/code-frame@7.23.5 Transitive: environment +10 191 kB nicolo-ribaudo
npm/@babel/compat-data@7.23.5 None 0 64.6 kB nicolo-ribaudo
npm/@babel/core@7.22.9 environment, filesystem, unsafe +1 798 kB nicolo-ribaudo
npm/@babel/generator@7.22.9 None +1 518 kB nicolo-ribaudo
npm/@babel/helper-annotate-as-pure@7.22.5 None 0 4.02 kB nicolo-ribaudo
npm/@babel/helper-compilation-targets@7.23.6 None +2 82.5 kB nicolo-ribaudo
npm/@babel/helper-environment-visitor@7.22.20 None 0 6.56 kB nicolo-ribaudo
npm/@babel/helper-function-name@7.23.0 None 0 21.6 kB nicolo-ribaudo
npm/@babel/helper-module-imports@7.22.15 None 0 54.4 kB nicolo-ribaudo
npm/@babel/helper-module-transforms@7.23.3 None +2 221 kB nicolo-ribaudo
npm/@babel/helper-plugin-utils@7.22.5 None 0 11.9 kB nicolo-ribaudo
npm/@babel/helper-remap-async-to-generator@7.22.20 None +1 25.4 kB nicolo-ribaudo
npm/@babel/helper-split-export-declaration@7.22.6 None 0 10.7 kB nicolo-ribaudo
npm/@babel/helper-validator-option@7.23.5 None 0 11.7 kB nicolo-ribaudo
npm/@babel/helpers@7.24.0 None 0 649 kB nicolo-ribaudo
npm/@babel/parser@7.24.0 None 0 1.88 MB nicolo-ribaudo
npm/@babel/plugin-syntax-class-properties@7.12.13 None 0 2.68 kB nicolo-ribaudo
npm/@babel/plugin-syntax-import-meta@7.10.4 None 0 2.56 kB jlhwung
npm/@babel/plugin-syntax-logical-assignment-operators@7.10.4 None 0 2.74 kB jlhwung
npm/@babel/plugin-syntax-numeric-separator@7.10.4 None 0 2.75 kB jlhwung
npm/@babel/plugin-syntax-top-level-await@7.14.5 None 0 2.74 kB nicolo-ribaudo
npm/@babel/plugin-transform-async-to-generator@7.22.5 None 0 7.96 kB nicolo-ribaudo
npm/@babel/plugin-transform-dotall-regex@7.23.3 None 0 4.17 kB nicolo-ribaudo
npm/@babel/plugin-transform-optional-chaining@7.23.4 None +1 40.5 kB nicolo-ribaudo
npm/@babel/plugin-transform-parameters@7.23.3 None 0 65 kB nicolo-ribaudo
npm/@babel/template@7.22.5 None 0 69 kB nicolo-ribaudo
npm/@babel/traverse@7.24.0 None 0 611 kB nicolo-ribaudo
npm/@babel/types@7.24.0 environment +1 2.46 MB nicolo-ribaudo
npm/@jridgewell/gen-mapping@0.3.3 None +1 94.7 kB jridgewell
npm/@jridgewell/resolve-uri@3.1.1 None 0 55.2 kB jridgewell
npm/@jridgewell/sourcemap-codec@1.4.15 None 0 45.9 kB jridgewell
npm/@jridgewell/trace-mapping@0.3.25 None 0 169 kB jridgewell
npm/@npmcli/fs@3.1.0 filesystem 0 26.5 kB lukekarrys
npm/@npmcli/git@5.0.3 filesystem Transitive: environment +6 133 kB npm-cli-ops
npm/@npmcli/installed-package-contents@2.0.2 filesystem +1 23.4 kB gar
npm/@types/minimatch@3.0.5 None 0 8.2 kB types
npm/@yarnpkg/lockfile@1.1.0 environment, eval, filesystem 0 280 kB arcanis
npm/agent-base@7.1.0 network 0 23.5 kB tootallnate
npm/agentkeepalive@4.3.0 network +1 46.5 kB fengmk2
npm/ajv-formats@2.1.1 None 0 52.2 kB esp
npm/ansi-colors@4.1.3 environment 0 26.1 kB jonschlinkert
npm/ansi-escapes@4.3.2 None +1 135 kB sindresorhus
npm/ansi-regex@6.0.1 None 0 5.67 kB qix
npm/assert-plus@1.0.0 environment 0 11.4 kB pfmooney
npm/axios@1.6.2 network Transitive: environment, filesystem +3 1.9 MB jasonsaayman
npm/babel-plugin-istanbul@6.1.1 environment, filesystem, shell 0 25.7 kB oss-bot
npm/base64-js@1.5.1 None 0 9.62 kB feross
npm/bl@4.1.0 None +1 147 kB matteo.collina
npm/browserslist@4.23.0 environment, filesystem 0 62.8 kB ai
npm/camelcase@5.3.1 None 0 7.45 kB sindresorhus
npm/chokidar@3.5.3 environment, filesystem 0 90.1 kB paulmillr
npm/cli-cursor@3.1.0 None +1 7.19 kB sindresorhus
npm/cli-spinners@2.6.1 None 0 27.5 kB sindresorhus
npm/cliui@7.0.4 None +1 41.2 kB oss-bot
npm/colorette@2.0.20 None 0 17 kB jorgebucaran
npm/combined-stream@1.0.8 None +1 19.5 kB alexindigo
npm/commander@11.1.0 environment, filesystem, shell 0 177 kB abetomo
npm/console-control-strings@1.1.0 None 0 12.7 kB iarna
npm/convert-source-map@1.9.0 filesystem 0 11.4 kB thlorenz
npm/core-util-is@1.0.3 None 0 4.98 kB isaacs
npm/debug@4.3.4 environment 0 42.4 kB qix
npm/decamelize@1.2.0 None 0 2.94 kB sindresorhus
npm/depd@2.0.0 environment, eval 0 27.1 kB dougwilson
npm/detect-indent@5.0.0 None 0 6.51 kB sindresorhus
npm/dotenv@16.3.1 environment, filesystem 0 71.6 kB motdotla
npm/duplexer@0.1.2 None 0 5.47 kB raynos
npm/emoji-regex@10.3.0 None 0 31.5 kB google-wombot
npm/encoding@0.1.13 None +1 356 kB andris
npm/end-of-stream@1.4.4 None 0 6.23 kB mafintosh
npm/esbuild-wasm@0.18.17 environment, filesystem, shell 0 11.5 MB evanw
npm/esbuild@0.18.17 environment, filesystem, network, shell 0 131 kB evanw
npm/external-editor@3.1.0 environment, filesystem, shell +3 131 kB mrkmg
npm/extsprintf@1.3.0 None 0 22.8 kB dap
npm/fast-glob@3.3.2 filesystem 0 96.7 kB mrmlnc
npm/figures@3.2.0 None +1 14.8 kB sindresorhus
npm/follow-redirects@1.15.6 network 0 29.4 kB rubenverborgh
npm/get-caller-file@2.0.5 None 0 4.72 kB stefanpenner
npm/http-cache-semantics@4.1.1 None 0 35.9 kB kornel
npm/https-proxy-agent@7.0.2 network 0 35.1 kB tootallnate
npm/iconv-lite@0.4.24 None 0 336 kB ashtuchkin
npm/is-docker@2.2.1 filesystem 0 3.01 kB sindresorhus
npm/is-fullwidth-code-point@5.0.0 None +1 19.1 kB sindresorhus
npm/is-plain-obj@1.1.0 None 0 2.62 kB sindresorhus
npm/is-wsl@2.2.0 environment, filesystem 0 3.76 kB sindresorhus
npm/isarray@1.0.0 None 0 3.89 kB juliangruber
npm/json-stringify-safe@5.0.1 None 0 12.7 kB isaacs
npm/json5@2.2.3 None 0 235 kB jordanbtucker
npm/jsonfile@6.1.0 filesystem +1 24.4 kB ryanzim
npm/log-symbols@4.1.0 None +1 8.12 kB sindresorhus
npm/make-fetch-happen@13.0.0 network Transitive: environment, filesystem +18 1.09 MB npm-cli-ops
npm/micromatch@4.0.5 None 0 55.9 kB jonschlinkert
npm/mime-db@1.52.0 None 0 206 kB dougwilson
npm/mime-types@2.1.35 None 0 18.3 kB dougwilson
npm/minipass-fetch@3.0.3 environment, network +2 185 kB npm-cli-ops
npm/minipass-pipeline@1.2.4 None +1 21.8 kB isaacs
npm/minizlib@2.1.2 None +1 32.1 kB isaacs
npm/mkdirp@1.0.4 environment, filesystem 0 19.1 kB isaacs
npm/mrmime@1.0.1 None 0 31 kB lukeed
npm/negotiator@0.6.3 None 0 27.4 kB dougwilson
npm/neo-async@2.6.2 None 0 298 kB suguru03
npm/npm-bundled@1.1.2 filesystem +1 141 kB isaacs
npm/npm-pick-manifest@9.0.0 None +2 27.4 kB npm-cli-ops
npm/open@8.4.2 environment, filesystem, shell +1 50.7 kB sindresorhus
npm/p-timeout@3.2.0 None +1 10.5 kB sindresorhus
npm/path-scurry@1.10.1 filesystem 0 529 kB isaacs
npm/pretty-format@29.7.0 Transitive: environment +4 546 kB simenb
npm/protocols@2.0.1 None 0 9.29 kB ionicabizau
npm/psl@1.9.0 None 0 461 kB lupomontero
npm/punycode@2.3.0 None 0 32.9 kB google-wombot
npm/readable-stream@3.6.2 environment 0 124 kB matteo.collina
npm/reflect-metadata@0.1.13 None 0 293 kB rbuckton
npm/resolve@1.22.4 environment, filesystem +2 159 kB ljharb
npm/rxjs@7.8.1 None 0 4.5 MB blesh
npm/safe-buffer@5.2.1 None 0 32.1 kB feross
npm/safer-buffer@2.1.2 None 0 42.3 kB chalker
npm/set-blocking@2.0.0 None 0 4.22 kB bcoe
npm/sigstore@1.4.0 environment, filesystem, network, shell +18 758 kB bdehamer
npm/socks@2.7.1 network +2 306 kB joshglazebrook
npm/source-map-support@0.5.21 filesystem +1 90.2 kB linusu
npm/source-map@0.6.1 None 0 805 kB tromey
npm/string_decoder@1.3.0 None 0 14.4 kB matteo.collina
npm/string-width@4.2.3 None +2 58.4 kB sindresorhus
npm/tar-stream@2.2.0 filesystem +1 29.9 kB mafintosh
npm/tree-kill@1.2.2 shell 0 7.82 kB wmhilton
npm/tsconfig-paths@4.2.0 environment, filesystem, unsafe 0 216 kB jonaskello
npm/tweetnacl@0.14.5 None 0 174 kB dchest
npm/util-deprecate@1.0.2 None 0 5.48 kB tootallnate
npm/wide-align@1.1.5 None 0 4.47 kB iarna
npm/xtend@4.0.2 None 0 6.46 kB raynos

🚮 Removed packages: npm/@domifa/backend@0.0.0-use.local, npm/@domifa/common@0.0.0-use.local, npm/@domifa/frontend@0.0.0-use.local, npm/@domifa/portail-admins@0.0.0-use.local, npm/@domifa/portail-usagers@0.0.0-use.local, npm/@types/estree@1.0.5, npm/acorn-jsx@5.3.2, npm/anymatch@3.1.3, npm/array.prototype.flat@1.3.2, npm/array.prototype.flatmap@1.3.2, npm/available-typed-arrays@1.0.7, npm/busboy@1.6.0, npm/call-bind@1.0.7, npm/deep-is@0.1.4, npm/define-data-property@1.1.4, npm/domifa@0.0.0-use.local, npm/entities@4.5.0, npm/eslint-config-prettier@9.1.0, npm/eslint-import-resolver-node@0.3.9, npm/eslint-visitor-keys@3.4.3, npm/estraverse@5.3.0, npm/extend-shallow@2.0.1, npm/fast-levenshtein@2.0.6, npm/fsevents@2.3.3, npm/get-intrinsic@1.2.4, npm/has-bigints@1.0.2, npm/has-property-descriptors@1.0.2, npm/has-symbols@1.0.3, npm/has-tostringtag@1.0.2, npm/is-callable@1.2.7, npm/is-date-object@1.0.5, npm/is-extendable@0.1.1, npm/is-regex@1.1.4, npm/is-string@1.0.7, npm/is-symbol@1.0.4, npm/is-typed-array@1.1.13, npm/nanoid@3.3.7, npm/normalize-path@3.0.0, npm/object-assign@4.1.1, npm/object-inspect@1.13.1, npm/prettier@3.3.2, npm/rimraf@5.0.7, npm/strip-json-comments@3.1.1, npm/tapable@2.2.1, npm/underscore@1.13.6, npm/zone.js@0.14.7

View full report↗︎

socket-security[bot] commented 2 weeks ago

🚨 Potential security issues detected. Learn more about Socket for GitHub ↗︎

To accept the risk, merge this PR and you will not be notified again.

Alert Package Note
Install scripts npm/esbuild@0.18.17

View full report↗︎

Next steps

What is an install script?

Install scripts are run when the package is installed. The majority of malware in npm is hidden in install scripts.

Packages should not be running non-essential scripts during install and there are often solutions to problems people solve with install scripts that can be run at publish time instead.

Take a deeper look at the dependency

Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support [AT] socket [DOT] dev.

Remove the package

If you happen to install a dependency that Socket reports as Known Malware you should immediately remove it and select a different dependency. For other alert types, you may may wish to investigate alternative packages or consider if there are other ways to mitigate the specific risk posed by the dependency.

Mark a package as acceptable risk

To ignore an alert, reply with a comment starting with @SocketSecurity ignore followed by a space separated list of ecosystem/package-name@version specifiers. e.g. @SocketSecurity ignore npm/foo@1.0.0 or ignore all packages with @SocketSecurity ignore-all

  • @SocketSecurity ignore npm/esbuild@0.18.17
sonarcloud[bot] commented 2 weeks ago

Quality Gate Passed Quality Gate passed

Issues
0 New issues
0 Accepted issues

Measures
0 Security Hotspots
No data about Coverage
0.0% Duplication on New Code

See analysis details on SonarCloud

SocialGroovyBot commented 2 weeks ago

:tada: This PR is included in version 2.170.2 :tada:

The release is available on GitHub release

Your semantic-release bot :package::rocket: