Closed dependabot[bot] closed 1 year ago
👍 No new dependency issues detected in pull request
Issue | Status |
---|---|
Install scripts | ✅ 0 issues |
Native code | ✅ 0 issues |
Bin script confusion | ✅ 0 issues |
Bin script shell injection | ✅ 0 issues |
Unresolved require | ✅ 0 issues |
Invalid package.json | ✅ 0 issues |
HTTP dependency | ✅ 0 issues |
Git dependency | ✅ 0 issues |
Potential typo squat | ✅ 0 issues |
Known Malware | ✅ 0 issues |
Telemetry | ✅ 0 issues |
Protestware/Troll package | ✅ 0 issues |
To ignore an alert, reply with a comment starting with @SocketSecurity ignore
followed by a space separated list of package-name@version
specifiers. e.g. @SocketSecurity ignore foo@1.0.0 bar@2.4.2
Powered by socket.dev
Merging #103 (040d781) into master (5ce62d4) will increase coverage by
0.20%
. The diff coverage is100.00%
.
:mega: This organization is not using Codecov’s GitHub App Integration. We recommend you install it so Codecov can continue to function properly for your repositories. Learn more
@@ Coverage Diff @@
## master #103 +/- ##
==========================================
+ Coverage 96.15% 96.35% +0.20%
==========================================
Files 22 23 +1
Lines 1923 1975 +52
==========================================
+ Hits 1849 1903 +54
+ Misses 74 72 -2
Flag | Coverage Δ | |
---|---|---|
macos-latest-18 | ? |
|
ubuntu-latest-18 | 96.25% <100.00%> (+0.10%) |
:arrow_up: |
windows-latest-18 | 96.23% <100.00%> (?) |
Flags with carried forward coverage won't be shown. Click here to find out more.
Impacted Files | Coverage Δ | |
---|---|---|
lib/run-task.js | 93.23% <100.00%> (+0.06%) |
:arrow_up: |
lib/spawn-win32.js | 100.00% <0.00%> (ø) |
|
lib/spawn-posix.js | 100.00% <0.00%> (+3.12%) |
:arrow_up: |
:mega: We’re building smart automated test selection to slash your CI/CD build times. Learn more
Bumps minimatch from 6.2.0 to 7.0.0.
Changelog
Sourced from minimatch's changelog.
... (truncated)
Commits
ce9e6a4
7.0.08aa00d7
changelog 7.0297b6c1
Pre-optimize patterns prior to parsingDependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)