Skip to content

chore(deps): update all dependencies - #307

Open
renovate[bot] wants to merge 1 commit into
masterfrom
renovate/all
Open

chore(deps): update all dependencies#307
renovate[bot] wants to merge 1 commit into
masterfrom
renovate/all

Conversation

@renovate

@renovate renovate Bot commented Apr 1, 2025

Copy link
Copy Markdown
Contributor

ℹ️ Note

This PR body was truncated due to platform limits.

This PR contains the following updates:

Package Change Age Confidence Type Update
@1stg/app-config (source) ^0.6.1^15.0.0 age confidence devDependencies major
@1stg/lib-config (source) ^0.6.1^13.0.0 age confidence devDependencies major
@1stg/tslint-config ^0.9.2^3.0.0 age confidence devDependencies major
@angular-devkit/build-angular ^0.1102.19^22.0.0 age confidence devDependencies major
@angular/cli ^8.3.29^22.0.0 age confidence devDependencies major
@angular/common (source) ^8.2.14^22.0.0 age confidence devDependencies major
@angular/compiler (source) ^8.2.14^22.0.0 age confidence devDependencies major
@angular/compiler-cli (source) ^8.2.14^22.0.0 age confidence devDependencies major
@angular/forms (source) ^8.2.14^22.0.0 age confidence devDependencies major
@angular/platform-browser (source) ^8.2.14^22.0.0 age confidence devDependencies major
@angular/platform-browser-dynamic (source) ^8.2.14^22.0.0 age confidence devDependencies major
@babel/core (source) ^7.24.5^8.0.0 age confidence devDependencies major
@commitlint/cli (source) ^8.3.6^21.0.0 age confidence devDependencies major
@storybook/addon-actions (source) ^5.3.21^9.0.0 age confidence devDependencies major
@storybook/addon-console ^1.2.3^3.0.0 age confidence devDependencies major
@storybook/addon-knobs ^5.3.21^8.0.0 age confidence devDependencies major
@storybook/addon-links (source) ^5.3.21^10.0.0 age confidence devDependencies major
@storybook/addon-storysource (source) ^5.3.21^8.0.0 age confidence devDependencies major
@storybook/angular (source) ^5.3.21^10.0.0 age confidence devDependencies major
@storybook/source-loader (source) ^5.3.21^8.0.0 age confidence devDependencies major
@types/node (source) ^13.13.52^24.0.0 age confidence devDependencies major
@types/webpack (source) ^4.41.38^5.0.0 age confidence devDependencies major
@​types/webpack-merge ^4.1.5^5.0.0 age confidence devDependencies major
actions/checkout v3v7 age confidence action major
github/codeql-action v2v4 age confidence action major
npm-run-all2 ^5.0.2^9.0.0 age confidence devDependencies major
rxjs (source) ^6.6.7^7.0.0 age confidence devDependencies major
sanitize.css ^11.0.1^13.0.0 age confidence devDependencies major
ts-node (source) ^8.10.2^10.0.0 age confidence devDependencies major
tslib (source) ^1.14.1^2.0.0 age confidence devDependencies major
typescript (source) ~3.9.10~7.0.0 age confidence resolutions major
webpack-merge ^4.2.2^6.0.0 age confidence devDependencies major
yarn-deduplicate ^1.1.1^6.0.0 age confidence devDependencies major
zone.js (source, changelog) ^0.11.4^0.16.0 age confidence devDependencies minor

Release Notes

1stG/configs (@​1stg/app-config)

v15.0.0

Compare Source

Major Changes
Patch Changes

v14.3.0

Compare Source

Minor Changes
Patch Changes

v14.2.0

Compare Source

Minor Changes
Patch Changes

v14.1.0

Compare Source

Minor Changes
Patch Changes

v14.0.0

Compare Source

Major Changes
Patch Changes

v13.1.0

Compare Source

Minor Changes
Patch Changes

v13.0.1

Compare Source

Patch Changes

v13.0.0

Compare Source

Major Changes
Patch Changes

v12.0.1

Compare Source

Patch Changes

v12.0.0

Compare Source

Major Changes
Patch Changes

v11.1.2

Compare Source

Patch Changes

v11.1.1

Compare Source

Patch Changes

v11.1.0

Compare Source

Minor Changes
Patch Changes

v11.0.3

Compare Source

Patch Changes

v11.0.2

Compare Source

Patch Changes

v11.0.1

Compare Source

Patch Changes

v11.0.0

Compare Source

Major Changes
Patch Changes

v10.0.1

Compare Source

Patch Changes

v10.0.0

Compare Source

Major Changes
Patch Changes

v9.0.1

Compare Source

Patch Changes

v9.0.0

Compare Source

Major Changes
Patch Changes

v8.1.0

Compare Source

Minor Changes
Patch Changes

v8.0.1

Compare Source

Patch Changes

v8.0.0

Compare Source

Major Changes
  • d03df9f Thanks @​JounQin! - feat!: migrate to eslint-community packages, bump stylelint
Minor Changes
Patch Changes

v7.3.0

Compare Source

Minor Changes
Patch Changes

v7.2.1

Compare Source

Patch Changes

v7.2.0

Compare Source

Minor Changes
Patch Changes

v7.1.1

Compare Source

Patch Changes

v7.1.0

Compare Source

Minor Changes
Patch Changes

v7.0.0

Compare Source

Major Changes
Patch Changes

v6.2.0

Compare Source

Minor Changes
Patch Changes

v6.1.5

Compare Source

Patch Changes

v6.1.4

Compare Source

Patch Changes

v6.1.3

Compare Source

Patch Changes

v6.1.2

Compare Source

Patch Changes

v6.1.1

Compare Source

Patch Changes

v6.1.0

Compare Source

Minor Changes
Patch Changes

v6.0.0

Compare Source

Major Changes
  • #​126 48d7542 Thanks @​JounQin! - build!: migrate to pnpm, yarn-deduplicate has been removed, you'll need to install it manually if you're still using yarn@v1
Patch Changes

[v5.2.7](https://redirect.github.com/1stG/configs/

Note

PR body was truncated to here.


Configuration

📅 Schedule: (UTC)

  • Branch creation
    • Between 12:00 AM and 03:59 AM, on day 1 of the month (* 0-3 1 * *)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@changeset-bot

changeset-bot Bot commented Apr 1, 2025

Copy link
Copy Markdown

⚠️ No Changeset found

Latest commit: 16f62a2

Merging this PR will not cause a version bump for any packages. If these changes should not result in a new version, you're good to go. If these changes should result in a version bump, you need to add a changeset.

Click here to learn what changesets are, and how to add one.

Click here if you're a maintainer who wants to add a changeset to this PR

@coderabbitai

coderabbitai Bot commented Apr 1, 2025

Copy link
Copy Markdown

Important

Review skipped

Bot user detected.

To trigger a single review, invoke the @coderabbitai review command.

You can disable this status message by setting the reviews.review_status to false in the CodeRabbit configuration file.

  • 🔍 Trigger a full review

Comment @coderabbitai help to get the list of available commands and usage tips.

@vercel

vercel Bot commented Apr 1, 2025

Copy link
Copy Markdown

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Preview Comments Updated (UTC)
ngrx Error Error Nov 7, 2025 4:53pm

@renovate
renovate Bot force-pushed the renovate/all branch from 6042915 to 04e1be0 Compare May 2, 2025 19:10
@renovate
renovate Bot force-pushed the renovate/all branch from 04e1be0 to 80437cc Compare May 18, 2025 23:56
@renovate
renovate Bot force-pushed the renovate/all branch from 80437cc to c749b99 Compare May 28, 2025 14:03
@renovate
renovate Bot force-pushed the renovate/all branch from c749b99 to 20798d6 Compare May 28, 2025 20:44
@socket-security

socket-security Bot commented Aug 31, 2025

Copy link
Copy Markdown

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn High
Obfuscated code: npm @emnapi/runtime is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: yarn.locknpm/@angular-devkit/build-angular@22.1.4npm/@emnapi/runtime@1.11.1

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/@emnapi/runtime@1.11.1. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

Warn High
Obfuscated code: npm chrono-node is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: yarn.locknpm/@1stg/app-config@15.0.0npm/@1stg/lib-config@13.0.1npm/chrono-node@2.9.0

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/chrono-node@2.9.0. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

Warn High
Obfuscated code: npm lmdb is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: yarn.locknpm/@angular-devkit/build-angular@22.1.4npm/lmdb@3.5.6

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/lmdb@3.5.6. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

Warn High
Obfuscated code: npm webpack is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: yarn.locknpm/@angular-devkit/build-angular@22.1.4npm/@storybook/angular@10.5.9npm/@types/webpack@5.28.5npm/webpack@5.109.2

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/webpack@5.109.2. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

Warn High
Obfuscated code: npm yargs is 90.0% likely obfuscated

Confidence: 0.90

Location: Package overview

From: yarn.locknpm/@1stg/app-config@15.0.0npm/yargs@17.7.3

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/yargs@17.7.3. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants