webtorrent / webtorrent-desktop

❤️ Streaming torrent app for Mac, Windows, and Linux
https://webtorrent.io/desktop
MIT License
9.69k stars 1k forks source link

fix(deps): update dependency music-metadata to v7.13.4 #2334

Closed renovate[bot] closed 1 year ago

renovate[bot] commented 1 year ago

Mend Renovate

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
music-metadata 7.13.3 -> 7.13.4 age adoption passing confidence

Release Notes

borewit/music-metadata ### [`v7.13.4`](https://togithub.com/Borewit/music-metadata/releases/tag/v7.13.4) [Compare Source](https://togithub.com/borewit/music-metadata/compare/v7.13.3...v7.13.4) #### 🎨 Improvements - RIFF Tag Mapping: Add tag variant for track index [@​Arthi-chaud](https://togithub.com/Arthi-chaud) ([#​1572](https://togithub.com/borewit/music-metadata/issues/1572)) #### ⬆️ Dependencies - Bump file-type from 18.0.0 to 18.2.1 [@​dependabot](https://togithub.com/dependabot) ([#​1547](https://togithub.com/borewit/music-metadata/issues/1547)) - Bump content-type from 1.0.4 to 1.0.5 [@​dependabot](https://togithub.com/dependabot) ([#​1517](https://togithub.com/borewit/music-metadata/issues/1517)) #### NPM release NPM release: [music-metadata@7.13.4](https://www.npmjs.com/package/music-metadata/v/7.13.4)

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.

socket-security[bot] commented 1 year ago

New dependency changes detected. Learn more about Socket for GitHub ↗︎


👍 No new dependency issues detected in pull request

Bot Commands

To ignore an alert, reply with a comment starting with @SocketSecurity ignore followed by a space separated list of package-name@version specifiers. e.g. @SocketSecurity ignore foo@1.0.0 bar@* or ignore all packages with @SocketSecurity ignore-all

Pull request alert summary
Issue Status
Install scripts ✅ 0 issues
Native code ✅ 0 issues
Bin script shell injection ✅ 0 issues
Unresolved require ✅ 0 issues
Invalid package.json ✅ 0 issues
HTTP dependency ✅ 0 issues
Git dependency ✅ 0 issues
Potential typo squat ✅ 0 issues
Known Malware ✅ 0 issues
Telemetry ✅ 0 issues
Protestware/Troll package ✅ 0 issues

📊 Modified Dependency Overview:

⬆️ Updated Package Version Diff Capability Access +/- Transitive Count Publisher
music-metadata@7.13.4 7.13.3...7.13.4 filesystem +1/-1 borewit