weareinreach / InReach

InReach is the world’s first open source platform matching LGBTQ+ people facing persecution or discrimination with safe, independently verified resources.
https://app.inreach.org
GNU General Public License v3.0
42 stars 4 forks source link

fix(auth): update all non-major dependencies #1432

Open renovate[bot] opened 3 weeks ago

renovate[bot] commented 3 weeks ago

This PR contains the following updates:

Package Type Update Change OpenSSF Age Adoption Passing Confidence
@aws-sdk/client-cognito-identity-provider (source) dependencies minor 3.679.0 -> 3.693.0 OpenSSF Scorecard age adoption passing confidence
@crowdin/crowdin-api-client dependencies minor 1.38.0 -> 1.39.1 OpenSSF Scorecard age adoption passing confidence
@hookform/resolvers (source) peerDependencies patch 3.9.0 -> 3.9.1 OpenSSF Scorecard age adoption passing confidence
@hookform/resolvers (source) devDependencies patch 3.9.0 -> 3.9.1 OpenSSF Scorecard age adoption passing confidence
@hookform/resolvers (source) dependencies patch 3.9.0 -> 3.9.1 OpenSSF Scorecard age adoption passing confidence
@iconify-json/carbon devDependencies patch 1.2.3 -> 1.2.4 age adoption passing confidence
@iconify-json/simple-icons devDependencies patch 1.2.9 -> 1.2.11 age adoption passing confidence
@opentelemetry/exporter-trace-otlp-http (source) dependencies patch 0.54.0 -> 0.54.2 OpenSSF Scorecard age adoption passing confidence
@opentelemetry/instrumentation (source) dependencies patch 0.54.0 -> 0.54.2 OpenSSF Scorecard age adoption passing confidence
@opentelemetry/sdk-node (source) dependencies patch 0.54.0 -> 0.54.2 OpenSSF Scorecard age adoption passing confidence
@playwright/test (source) devDependencies patch 1.48.1 -> 1.48.2 OpenSSF Scorecard age adoption passing confidence
@prisma/client (source) dependencies minor 5.21.1 -> 5.22.0 OpenSSF Scorecard age adoption passing confidence
@prisma/instrumentation (source) dependencies minor 5.21.1 -> 5.22.0 OpenSSF Scorecard age adoption passing confidence
@prisma/nextjs-monorepo-workaround-plugin (source) devDependencies minor 5.21.1 -> 5.22.0 OpenSSF Scorecard age adoption passing confidence
@relative-ci/agent (source) devDependencies patch 4.2.12 -> 4.2.13 OpenSSF Scorecard age adoption passing confidence
@sentry/browser (source) dependencies minor 8.35.0 -> 8.38.0 OpenSSF Scorecard age adoption passing confidence
@sentry/nextjs (source) dependencies minor 8.35.0 -> 8.38.0 OpenSSF Scorecard age adoption passing confidence
@sentry/node (source) dependencies minor 8.35.0 -> 8.38.0 OpenSSF Scorecard age adoption passing confidence
@sentry/opentelemetry (source) dependencies minor 8.35.0 -> 8.38.0 OpenSSF Scorecard age adoption passing confidence
@sentry/profiling-node (source) dependencies minor 8.35.0 -> 8.38.0 OpenSSF Scorecard age adoption passing confidence
@storybook/addon-a11y (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/addon-actions (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/addon-designs devDependencies patch 8.0.3 -> 8.0.4 OpenSSF Scorecard age adoption passing confidence
@storybook/addon-essentials (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/addon-interactions (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/addon-links (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/addon-mdx-gfm (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/addon-viewport (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/components (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/core-events (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/manager-api (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/nextjs (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/preview-api (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/react (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/test (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/theming (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@storybook/types (source) devDependencies minor 8.3.6 -> 8.4.4 OpenSSF Scorecard age adoption passing confidence
@swc/core (source) devDependencies minor 1.7.39 -> 1.9.2 OpenSSF Scorecard age adoption passing confidence
@swc/helpers (source) devDependencies patch 0.5.13 -> 0.5.15 OpenSSF Scorecard age adoption passing confidence
@turbo/gen (source) devDependencies minor 2.2.3 -> 2.3.0 OpenSSF Scorecard age adoption passing confidence
@types/node (source) devDependencies patch 20.17.0 -> 20.17.6 OpenSSF Scorecard age adoption passing confidence
@vercel/analytics (source) dependencies minor 1.3.1 -> 1.4.0 OpenSSF Scorecard age adoption passing confidence
@vercel/edge-config (source) dependencies minor 1.3.0 -> 1.4.0 OpenSSF Scorecard age adoption passing confidence
@vercel/ncc devDependencies patch 0.38.2 -> 0.38.3 OpenSSF Scorecard age adoption passing confidence
@vercel/speed-insights (source) dependencies minor 1.0.13 -> 1.1.0 OpenSSF Scorecard age adoption passing confidence
chromatic (source) devDependencies minor 11.15.0 -> 11.18.1 OpenSSF Scorecard age adoption passing confidence
chromatic (source) dependencies minor 11.15.0 -> 11.18.1 OpenSSF Scorecard age adoption passing confidence
dotenv-expand devDependencies patch 11.0.6 -> 11.0.7 OpenSSF Scorecard age adoption passing confidence
eslint-plugin-storybook devDependencies minor 0.10.1 -> 0.11.0 OpenSSF Scorecard age adoption passing confidence
eslint-plugin-turbo (source) devDependencies minor 2.2.3 -> 2.3.0 OpenSSF Scorecard age adoption passing confidence
google-auth-library devDependencies minor 9.14.2 -> 9.15.0 OpenSSF Scorecard age adoption passing confidence
i18next (source) peerDependencies patch 23.16.3 -> 23.16.5 OpenSSF Scorecard age adoption passing confidence
i18next (source) devDependencies patch 23.16.3 -> 23.16.5 OpenSSF Scorecard age adoption passing confidence
i18next (source) dependencies patch 23.16.3 -> 23.16.5 OpenSSF Scorecard age adoption passing confidence
knip (source) devDependencies minor 5.34.0 -> 5.37.0 OpenSSF Scorecard age adoption passing [![
vercel[bot] commented 3 weeks ago

The latest updates on your projects. Learn more about Vercel for Git ↗︎

Name Status Preview Comments Updated (UTC)
inreach-app ✅ Ready (Inspect) Visit Preview 💬 Add feedback Nov 15, 2024 8:27pm
coderabbitai[bot] commented 3 weeks ago

[!IMPORTANT]

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.


🪧 Tips ### Chat There are 3 ways to chat with [CodeRabbit](https://coderabbit.ai): - Review comments: Directly reply to a review comment made by CodeRabbit. Example: - `I pushed a fix in commit , please review it.` - `Generate unit testing code for this file.` - `Open a follow-up GitHub issue for this discussion.` - Files and specific lines of code (under the "Files changed" tab): Tag `@coderabbitai` in a new review comment at the desired location with your query. Examples: - `@coderabbitai generate unit testing code for this file.` - `@coderabbitai modularize this function.` - PR comments: Tag `@coderabbitai` in a new PR comment to ask questions about the PR branch. For the best results, please provide a very specific query, as very limited context is provided in this mode. Examples: - `@coderabbitai gather interesting stats about this repository and render them as a table. Additionally, render a pie chart showing the language distribution in the codebase.` - `@coderabbitai read src/utils.ts and generate unit testing code.` - `@coderabbitai read the files in the src/scheduler package and generate a class diagram using mermaid and a README in the markdown format.` - `@coderabbitai help me debug CodeRabbit configuration file.` Note: Be mindful of the bot's finite context window. It's strongly recommended to break down tasks such as reading entire modules into smaller chunks. For a focused discussion, use review comments to chat about specific files and their changes, instead of using the PR comments. ### CodeRabbit Commands (Invoked using PR comments) - `@coderabbitai pause` to pause the reviews on a PR. - `@coderabbitai resume` to resume the paused reviews. - `@coderabbitai review` to trigger an incremental review. This is useful when automatic reviews are disabled for the repository. - `@coderabbitai full review` to do a full review from scratch and review all the files again. - `@coderabbitai summary` to regenerate the summary of the PR. - `@coderabbitai resolve` resolve all the CodeRabbit review comments. - `@coderabbitai configuration` to show the current CodeRabbit configuration for the repository. - `@coderabbitai help` to get help. ### Other keywords and placeholders - Add `@coderabbitai ignore` anywhere in the PR description to prevent this PR from being reviewed. - Add `@coderabbitai summary` or `` to generate the high-level summary at a specific location in the PR description. - Add `@coderabbitai` or `@coderabbitai title` anywhere in the PR title to generate the title automatically. ### CodeRabbit Configuration File (`.coderabbit.yaml`) - You can programmatically configure CodeRabbit by adding a `.coderabbit.yaml` file to the root of your repository. - Please see the [configuration documentation](https://docs.coderabbit.ai/guides/configure-coderabbit) for more information. - If your editor has YAML language server enabled, you can add the path at the top of this file to enable auto-completion and validation: `# yaml-language-server: $schema=https://coderabbit.ai/integrations/schema.v2.json` ### Documentation and Community - Visit our [Documentation](https://docs.coderabbit.ai) for detailed information on how to use CodeRabbit. - Join our [Discord Community](http://discord.gg/coderabbit) to get help, request features, and share feedback. - Follow us on [X/Twitter](https://twitter.com/coderabbitai) for updates and announcements.
socket-security[bot] commented 3 weeks ago

New and removed dependencies detected. Learn more about Socket for GitHub ↗︎

Package New capabilities Transitives Size Publisher
npm/@aws-sdk/client-cognito-identity-provider@3.693.0 Transitive: environment, filesystem, shell +68 6.15 MB aws-sdk-bot
npm/@crowdin/crowdin-api-client@1.39.1 network 0 510 kB andrii.bodnar
npm/@hookform/resolvers@3.9.1 None 0 712 kB bluebill1049
npm/@iconify-json/carbon@1.2.4 None 0 1.07 MB cyberalien
npm/@iconify-json/simple-icons@1.2.11 None 0 4.62 MB cyberalien
npm/@opentelemetry/exporter-trace-otlp-http@0.54.2 Transitive: environment, network +5 9.59 MB dyladan
npm/@opentelemetry/instrumentation@0.54.2 None +2 638 kB bogdandrutu, dyladan, pichlermarc
npm/@opentelemetry/sdk-node@0.54.2 environment Transitive: filesystem, network +15 12.6 MB dyladan
npm/@playwright/test@1.48.2 None 0 25.5 kB dgozman-ms, mxschmitt, pavelfeldman, ...1 more
npm/@prisma/client@5.22.0 None 0 8.38 MB aqrln, pirix-gh, prismabot
npm/@prisma/instrumentation@5.22.0 environment Transitive: filesystem +3 638 kB prismabot
npm/@prisma/nextjs-monorepo-workaround-plugin@5.22.0 filesystem 0 18.2 kB prismabot
npm/@relative-ci/agent@4.2.13 None +2 43.7 kB
npm/@sentry/browser@8.38.0 Transitive: network +7 10.1 MB sentry-bot
npm/@sentry/nextjs@8.38.0 environment, filesystem, network +40 22.2 MB benvinegar, billyvg, evanpurkhiser, ...8 more
npm/@sentry/node@8.38.0 environment, unsafe Transitive: filesystem, network +42 10.6 MB sentry-bot
npm/@sentry/opentelemetry@8.38.0 Transitive: network +3 4.4 MB sentry-bot
npm/@sentry/profiling-node@8.38.0 environment, filesystem, shell Transitive: network +3 6.56 MB sentry-bot
npm/@storybook/addon-a11y@8.4.4 None +2 57.4 kB shilman
npm/@storybook/addon-actions@8.4.4 None +2 69.9 kB domyen, ghengeveld, jreinhold, ...8 more
npm/@storybook/addon-designs@8.0.4 None +3 630 kB yannbf
npm/@storybook/addon-essentials@8.4.4 None +15 4.48 MB domyen, ghengeveld, jreinhold, ...8 more
npm/@storybook/addon-interactions@8.4.4 Transitive: environment +4 551 kB domyen, ghengeveld, jreinhold, ...8 more
npm/@storybook/addon-links@8.4.4 None +2 70.9 kB domyen, ghengeveld, jreinhold, ...8 more
npm/@storybook/addon-mdx-gfm@8.4.4 None 0 4.08 kB shilman
npm/@storybook/addon-viewport@8.4.4 None 0 26.9 kB domyen, ghengeveld, jreinhold, ...8 more
npm/@storybook/components@8.4.4 None 0 1.29 kB domyen, ghengeveld, jreinhold, ...8 more
npm/@storybook/core-events@8.4.4 None 0 3.87 kB shilman
npm/@storybook/manager-api@8.4.4 None 0 1.27 kB domyen, ghengeveld, jreinhold, ...8 more
npm/@storybook/nextjs@8.4.4 environment Transitive: filesystem +111 13.2 MB shilman
npm/@storybook/preview-api@8.4.4 None 0 1.29 kB domyen, ghengeveld, jreinhold, ...8 more
npm/@storybook/react@8.4.4 None +2 938 kB domyen, ghengeveld, jreinhold, ...8 more
npm/@storybook/test@8.4.4 Transitive: environment +20 6.43 MB domyen, ghengeveld, jreinhold, ...8 more
npm/@storybook/theming@8.4.4 None 0 1.58 kB domyen, ghengeveld, jreinhold, ...8 more
npm/@storybook/types@8.4.4 None 0 1.24 kB shilman
npm/@swc/core@1.9.2 None +2 208 kB kdy1, kwonoj
npm/@swc/helpers@0.5.15 None 0 234 kB kdy1
npm/@turbo/gen@2.3.0 Transitive: environment, eval, filesystem +1 935 kB turbobot
npm/@types/node@20.17.6 None 0 2.22 MB types
npm/@vercel/analytics@1.4.0 None 0 411 kB vercel-release-bot
npm/@vercel/edge-config@1.4.0 environment, network +1 174 kB vercel-release-bot
npm/@vercel/ncc@0.38.3 filesystem, unsafe 0 16.6 MB vercel-release-bot
npm/@vercel/speed-insights@1.1.0 None 0 285 kB vercel-release-bot

🚮 Removed packages: npm/@aws-sdk/client-cognito-identity-provider@3.679.0, npm/@crowdin/crowdin-api-client@1.38.0, npm/@hookform/resolvers@3.9.0, npm/@iconify-json/carbon@1.2.3, npm/@iconify-json/simple-icons@1.2.9, npm/@opentelemetry/exporter-trace-otlp-http@0.54.0, npm/@opentelemetry/instrumentation@0.54.0, npm/@opentelemetry/sdk-node@0.54.0, npm/@playwright/test@1.48.1, npm/@prisma/client@5.21.1, npm/@prisma/instrumentation@5.21.1, npm/@prisma/nextjs-monorepo-workaround-plugin@5.21.1, npm/@relative-ci/agent@4.2.12, npm/@sentry/browser@8.35.0, npm/@sentry/nextjs@8.35.0, npm/@sentry/node@8.35.0, npm/@sentry/opentelemetry@8.35.0, npm/@sentry/profiling-node@8.35.0, npm/@storybook/addon-a11y@8.3.6, npm/@storybook/addon-actions@8.3.6, npm/@storybook/addon-designs@8.0.3, npm/@storybook/addon-essentials@8.3.6, npm/@storybook/addon-interactions@8.3.6, npm/@storybook/addon-links@8.3.6, npm/@storybook/addon-mdx-gfm@8.3.6, npm/@storybook/addon-viewport@8.3.6, npm/@storybook/components@8.3.6, npm/@storybook/core-events@8.3.6, npm/@storybook/manager-api@8.3.6, npm/@storybook/nextjs@8.3.6, npm/@storybook/preview-api@8.3.6, npm/@storybook/react@8.3.6, npm/@storybook/test@8.3.6, npm/@storybook/theming@8.3.6, npm/@storybook/types@8.3.6, npm/@swc/core@1.7.39, npm/@swc/helpers@0.5.13, npm/@turbo/gen@2.2.3, npm/@types/node@20.17.0, npm/@vercel/analytics@1.3.1, npm/@vercel/edge-config@1.3.0, npm/@vercel/ncc@0.38.2, npm/@vercel/speed-insights@1.0.13

View full report↗︎

relativeci[bot] commented 3 weeks ago

#1776 Bundle Size — 5.64MiB (+0.03%).

ce904d3(current) vs 6822567 dev#1689(baseline)

[!WARNING] Bundle contains 5 duplicate packages – View duplicate packages

Bundle metrics  Change 4 changes Regression 1 regression
                 Current
#1776
     Baseline
#1689
Regression  Initial JS 3.05MiB(+0.06%) 3.05MiB
No change  Initial CSS 9.7KiB 9.7KiB
Change  Cache Invalidation 94.94% 30.48%
No change  Chunks 67 67
No change  Assets 80 80
Change  Modules 2017(+0.05%) 2016
No change  Duplicate Modules 361 361
Change  Duplicate Code 9.98%(-0.2%) 10%
No change  Packages 159 159
No change  Duplicate Packages 5 5

Bundle size by type  Change 2 changes Regression 2 regressions
|            |       Current
[#1776](https://app.relative-ci.com/projects/lv8Dwq77xc3pShDq86Dg/jobs/1776-2aQGJvAWbYNcUzBt8bF5?utm_source=github&utm_content=totals&utm_campaign=pr-report "View bundle analysis report") |      Baseline
[#1689](https://app.relative-ci.com/projects/lv8Dwq77xc3pShDq86Dg/jobs/1689-APgpRjgN4XRBJW8ldtEl?utm_source=github&utm_content=totals&utm_campaign=pr-report "View baseline bundle analysis report") | |:--|--:|--:| | Regression  [JS](https://app.relative-ci.com/projects/lv8Dwq77xc3pShDq86Dg/jobs/1776-2aQGJvAWbYNcUzBt8bF5/assets?ba=%7B%22filters%22%3A%22ft.CSS-0_ft.JS-1_ft.IMG-0_ft.MEDIA-0_ft.FONT-0_ft.HTML-0_ft.OTHER-0%22%7D&utm_source=github&utm_content=totals&utm_campaign=pr-report "View JS assets") | `4.41MiB` (`+0.04%`) | `4.4MiB` | | Regression  [Other](https://app.relative-ci.com/projects/lv8Dwq77xc3pShDq86Dg/jobs/1776-2aQGJvAWbYNcUzBt8bF5/assets?ba=%7B%22filters%22%3A%22ft.CSS-0_ft.JS-0_ft.IMG-0_ft.MEDIA-0_ft.FONT-0_ft.HTML-0_ft.OTHER-1%22%7D&utm_source=github&utm_content=totals&utm_campaign=pr-report "View Other assets") | `1.13MiB` (`~+0.01%`) | `1.13MiB` | | No change  [Fonts](https://app.relative-ci.com/projects/lv8Dwq77xc3pShDq86Dg/jobs/1776-2aQGJvAWbYNcUzBt8bF5/assets?ba=%7B%22filters%22%3A%22ft.CSS-0_ft.JS-0_ft.IMG-0_ft.MEDIA-0_ft.FONT-1_ft.HTML-0_ft.OTHER-0%22%7D&utm_source=github&utm_content=totals&utm_campaign=pr-report "View Fonts assets") | `94.54KiB` | `94.54KiB` | | No change  [CSS](https://app.relative-ci.com/projects/lv8Dwq77xc3pShDq86Dg/jobs/1776-2aQGJvAWbYNcUzBt8bF5/assets?ba=%7B%22filters%22%3A%22ft.CSS-1_ft.JS-0_ft.IMG-0_ft.MEDIA-0_ft.FONT-0_ft.HTML-0_ft.OTHER-0%22%7D&utm_source=github&utm_content=totals&utm_campaign=pr-report "View CSS assets") | `9.7KiB` | `9.7KiB` | | No change  [IMG](https://app.relative-ci.com/projects/lv8Dwq77xc3pShDq86Dg/jobs/1776-2aQGJvAWbYNcUzBt8bF5/assets?ba=%7B%22filters%22%3A%22ft.CSS-0_ft.JS-0_ft.IMG-1_ft.MEDIA-0_ft.FONT-0_ft.HTML-0_ft.OTHER-0%22%7D&utm_source=github&utm_content=totals&utm_campaign=pr-report "View IMG assets") | `8.57KiB` | `8.57KiB` |

Bundle analysis reportBranch renovate/all-minor-patchProject dashboard


Generated by RelativeCIDocumentationReport issue

github-actions[bot] commented 3 weeks ago

📦 Next.js Bundle Analysis for @weareinreach/app

This analysis was generated by the Next.js Bundle Analysis action. 🤖

This PR introduced no changes to the JavaScript bundle! 🙌

alwaysmeticulous[bot] commented 3 weeks ago

🤖 No test run has been triggered as your Meticulous project has been deactivated (since you haven't viewed any test results in a while). Click here to reactivate.

Last updated for commit ce904d3. This comment will update as new commits are pushed.

sonarcloud[bot] commented 1 hour ago

Quality Gate Passed Quality Gate passed

Issues
0 New issues
0 Accepted issues

Measures
0 Security Hotspots
0.0% Coverage on New Code
0.0% Duplication on New Code

See analysis details on SonarQube Cloud