Conversation
Bumps the eslint group with 5 updates: | Package | From | To | | --- | --- | --- | | [@eslint/js](https://github.com/eslint/eslint/tree/HEAD/packages/js) | `9.17.0` | `9.18.0` | | [eslint](https://github.com/eslint/eslint) | `9.17.0` | `9.18.0` | | [eslint-config-prettier](https://github.com/prettier/eslint-config-prettier) | `9.1.0` | `10.0.1` | | [eslint-plugin-react](https://github.com/jsx-eslint/eslint-plugin-react) | `7.37.3` | `7.37.4` | | [typescript-eslint](https://github.com/typescript-eslint/typescript-eslint/tree/HEAD/packages/typescript-eslint) | `8.19.1` | `8.20.0` | Updates `@eslint/js` from 9.17.0 to 9.18.0 - [Release notes](https://github.com/eslint/eslint/releases) - [Changelog](https://github.com/eslint/eslint/blob/main/CHANGELOG.md) - [Commits](https://github.com/eslint/eslint/commits/v9.18.0/packages/js) Updates `eslint` from 9.17.0 to 9.18.0 - [Release notes](https://github.com/eslint/eslint/releases) - [Changelog](https://github.com/eslint/eslint/blob/main/CHANGELOG.md) - [Commits](eslint/eslint@v9.17.0...v9.18.0) Updates `eslint-config-prettier` from 9.1.0 to 10.0.1 - [Release notes](https://github.com/prettier/eslint-config-prettier/releases) - [Changelog](https://github.com/prettier/eslint-config-prettier/blob/main/CHANGELOG.md) - [Commits](prettier/eslint-config-prettier@v9.1.0...v10.0.1) Updates `eslint-plugin-react` from 7.37.3 to 7.37.4 - [Release notes](https://github.com/jsx-eslint/eslint-plugin-react/releases) - [Changelog](https://github.com/jsx-eslint/eslint-plugin-react/blob/master/CHANGELOG.md) - [Commits](jsx-eslint/eslint-plugin-react@v7.37.3...v7.37.4) Updates `typescript-eslint` from 8.19.1 to 8.20.0 - [Release notes](https://github.com/typescript-eslint/typescript-eslint/releases) - [Changelog](https://github.com/typescript-eslint/typescript-eslint/blob/main/packages/typescript-eslint/CHANGELOG.md) - [Commits](https://github.com/typescript-eslint/typescript-eslint/commits/v8.20.0/packages/typescript-eslint) --- updated-dependencies: - dependency-name: "@eslint/js" dependency-type: direct:development update-type: version-update:semver-minor dependency-group: eslint - dependency-name: eslint dependency-type: direct:development update-type: version-update:semver-minor dependency-group: eslint - dependency-name: eslint-config-prettier dependency-type: direct:development update-type: version-update:semver-major dependency-group: eslint - dependency-name: eslint-plugin-react dependency-type: direct:development update-type: version-update:semver-patch dependency-group: eslint - dependency-name: typescript-eslint dependency-type: direct:development update-type: version-update:semver-minor dependency-group: eslint ... Signed-off-by: dependabot[bot] <support@github.com>
|
The latest updates on your projects. Learn more about Vercel for Git ↗︎
|
Minder Vulnerability Report ✅Minder analyzed this PR and found it does not add any new vulnerable dependencies.
|
ghost
left a comment
There was a problem hiding this comment.
Dependency Information
Minder analyzed the dependencies introduced in this pull request and detected that some dependencies do not meet your security profile.
📦 Dependency: @eslint/core
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 5.8 |
| Repository activity | 3.4 |
| User activity | 8.3 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 11 |
| Number of git tags or releases | 120 |
| Versions matched to tags or releases | 11 |
Alternatives
| Package | Score | Description |
|---|---|---|
| eslint-config-prettier | 0 | |
| eslint-plugin-eslint-comments | 0 |
📦 Dependency: @eslint/js
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 8.8 |
| Repository activity | 8.6 |
| User activity | 9 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 56 |
| Number of git tags or releases | 133 |
| Versions matched to tags or releases | 51 |
📦 Dependency: @eslint/plugin-kit
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 5.8 |
| Repository activity | 3.4 |
| User activity | 8.3 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 7 |
| Number of git tags or releases | 120 |
| Versions matched to tags or releases | 7 |
📦 Dependency: @typescript-eslint/eslint-plugin
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 8.5 |
| Repository activity | 8.2 |
| User activity | 8.7 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 3863 |
| Number of git tags or releases | 176 |
| Versions matched to tags or releases | 166 |
Alternatives
| Package | Score | Description |
|---|---|---|
| @typescript-eslint/eslint-plugin-tslint | 0 | |
| @typescript-eslint/parser | 0 |
📦 Dependency: @typescript-eslint/parser
Trusty Score: 0
Alternatives
| Package | Score | Description |
|---|---|---|
| @babel/eslint-parser | 0 |
📦 Dependency: @typescript-eslint/scope-manager
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 8.5 |
| Repository activity | 8.2 |
| User activity | 8.7 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 3192 |
| Number of git tags or releases | 176 |
| Versions matched to tags or releases | 167 |
Alternatives
| Package | Score | Description |
|---|---|---|
| @typescript-eslint/eslint-plugin | 0 | |
| @typescript-eslint/parser | 0 |
📦 Dependency: @typescript-eslint/type-utils
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 8.5 |
| Repository activity | 8.2 |
| User activity | 8.7 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 2254 |
| Number of git tags or releases | 176 |
| Versions matched to tags or releases | 165 |
Alternatives
| Package | Score | Description |
|---|---|---|
| typescript | 0 |
📦 Dependency: @typescript-eslint/types
Trusty Score: 0
📦 Dependency: @typescript-eslint/typescript-estree
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 8.5 |
| Repository activity | 8.2 |
| User activity | 8.7 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 3958 |
| Number of git tags or releases | 176 |
| Versions matched to tags or releases | 167 |
Alternatives
| Package | Score | Description |
|---|---|---|
| @typescript-eslint/parser | 0 |
📦 Dependency: @typescript-eslint/utils
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 8.5 |
| Repository activity | 8.2 |
| User activity | 8.7 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 2240 |
| Number of git tags or releases | 176 |
| Versions matched to tags or releases | 166 |
Alternatives
| Package | Score | Description |
|---|---|---|
| @typescript-eslint/eslint-plugin | 0 | |
| @typescript-eslint/parser | 0 |
📦 Dependency: @typescript-eslint/visitor-keys
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 8.5 |
| Repository activity | 8.2 |
| User activity | 8.7 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 3226 |
| Number of git tags or releases | 176 |
| Versions matched to tags or releases | 167 |
Alternatives
| Package | Score | Description |
|---|---|---|
| @typescript-eslint/typescript-estree | 0 | |
| @typescript-eslint/parser | 0 |
📦 Dependency: eslint
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 8.8 |
| Repository activity | 8.6 |
| User activity | 9 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 377 |
| Number of git tags or releases | 134 |
| Versions matched to tags or releases | 134 |
📦 Dependency: eslint-config-prettier
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 7 |
| Repository activity | 5.5 |
| User activity | 8.4 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 73 |
| Number of git tags or releases | 71 |
| Versions matched to tags or releases | 71 |
Alternatives
| Package | Score | Description |
|---|---|---|
| eslint-config-prettier-standard | 0 |
📦 Dependency: eslint-plugin-react
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 8.2 |
| Repository activity | 7.9 |
| User activity | 8.5 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 215 |
| Number of git tags or releases | 113 |
| Versions matched to tags or releases | 66 |
Alternatives
| Package | Score | Description |
|---|---|---|
| eslint-plugin-react-native | 0 |
📦 Dependency: typescript-eslint
Trusty Score: 0
Scoring details
| Component | Score |
|---|---|
| Package activity | 8.5 |
| Repository activity | 8.2 |
| User activity | 8.7 |
| Provenance | historical_provenance_match |
Proof of Origin (Provenance)
This package can be linked back to its source code using a historical provenance map.
We were able to correlate a significant number of git tags and tagged releases in this package’s source code to versions of the published package. This mapping creates a strong link from the package back to its source code repository, verifying proof of origin.
| Published package versions | 655 |
| Number of git tags or releases | 176 |
| Versions matched to tags or releases | 50 |
Alternatives
| Package | Score | Description |
|---|---|---|
| @typescript-eslint/eslint-plugin | 0 | |
| @typescript-eslint/parser | 0 |
Bumps the eslint group with 5 updates:
9.17.09.18.09.17.09.18.09.1.010.0.17.37.37.37.48.19.18.20.0Updates
@eslint/jsfrom 9.17.0 to 9.18.0Release notes
Sourced from
@eslint/js's releases.... (truncated)
Changelog
Sourced from
@eslint/js's changelog.... (truncated)
Commits
362099cchore: package.json update for@eslint/jsrelease495aa49chore: extract packagenamefrompackage.jsonfor public interface (#19314)Updates
eslintfrom 9.17.0 to 9.18.0Release notes
Sourced from eslint's releases.
... (truncated)
Changelog
Sourced from eslint's changelog.
... (truncated)
Commits
1c87b419.18.04df3132Build: changelog update for 9.18.0c52be85chore: upgrade to@eslint/js@9.18.0(#19330)362099cchore: package.json update for@eslint/jsrelease9486141deps: upgrade@eslint/coreand@eslint/plugin-kit(#19329)d9c23c5docs: replacevarwithconstin rule examples (#19325)8e1a898docs: add tabs to cli code blocks (#18784)f3aeefbdocs: rewrite using let and const in rule examples (#19320)0b680b3docs: Update README98c86a9docs:Edit this pagebutton link to different branches (#19228)Updates
eslint-config-prettierfrom 9.1.0 to 10.0.1Release notes
Sourced from eslint-config-prettier's releases.
Changelog
Sourced from eslint-config-prettier's changelog.
Commits
c5170f0fix: add main fielde814e70chore: change release folders9ebedc7chore: release eslint-config-prettier (#296)5be64befeat: add support for@stylistic/eslint-plugin(#272)5687e7dchore: migrate to changeset for automatically releasing (#278)4f3bbb4Remove unused eslint-disable-next-line commentMaintainer changes
This version was pushed to npm by jounqin, a new releaser for eslint-config-prettier since your current version.
Updates
eslint-plugin-reactfrom 7.37.3 to 7.37.4Release notes
Sourced from eslint-plugin-react's releases.