Skip to content

chore(deps): update dependency better-npm-audit to v3 #220

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Apr 6, 2025

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
better-npm-audit 1.12.1 -> 3.11.0 age adoption passing confidence

Release Notes

jeemok/better-npm-audit (better-npm-audit)

v3.11.0

Compare Source

  • #​102 Respect the NO_COLOR environment variable

v3.10.0

Compare Source

  • #​100 Add support for including specific columns in audit report

v3.9.0

Compare Source

  • 5df4120 Bump micromatch from 4.0.4 to 4.0.8
  • 8820f03 Fix getting npm version through CLI

v3.8.3

Compare Source

  • 607f16e fix(build): ensure lib/index.js is executable after build

v3.8.2

Compare Source

v3.8.1

Compare Source

  • 607f16e fix(build): ensure lib/index.js is executable after build

v3.8.0

Compare Source

  • 27a7cb3 Use "--omit=dev" internally on newer npm version
  • 76b4c57 b3e04d3 NPM Audit for fixing vulnerabilities

v3.7.3

  • 99c0697 Added handling for empty strings in displaying unused exception message

v3.7.2

v3.7.1

  • 43380eb Fixed unused exceptions handler

v3.7.0

  • 1871068 Handles non numeric exception IDs

v3.6.0

Compare Source

  • #​71 Added new option: ignore by module name

v3.5.1

Compare Source

  • 0316010 Fixed npm run audit command
  • 697421d Fixed hanging process on Windows
  • f5ebe1f Fixed invalid main path in package.json

v3.4.0

Compare Source

  • fe66222 Log exception, when failed to parse .nsprc file

v3.3.0

Compare Source

  • 5f36c41 Shorten node path for NPM v7

v3.2.1

Compare Source

  • e5d19a5 Include dependency path into the security report

v3.1.2

Compare Source

v3.1.1

Compare Source

v3.1.0

Compare Source

  • #a5bba42 Updated declaration file extension so it will not be included in final build
  • #b1b05ff Added multiple date format support for expiry field
  • #​15ae9ad Added dayjs package
  • #​32b8535 Style the exception expiry date if it is more than one or five years ago

v3.0.1

Compare Source

v3.0.0

Compare Source

  • #​49 Refactored to TypeScript 🎉
  • #​49 Upgraded package commander from version 2.19.0 to 8.0.0

v2.1.0

Compare Source

  • #​43 Add support for npm registry url option (@​Tristan WAGNER)
  • #​42 Added CodeQL vulnerabilities check across codebase in CI
  • #e77632c Removed github username as region currently not supported

v2.0.5

Compare Source

  • #​52be395 Removed unused package cli-table from the dependencies
  • #​40 Added nodejs v16.x coverage in CI

v2.0.4

Compare Source

Notable changes
  • #​0b7357c Simplified the workflow and improved overall performance by running lesser in the process
  • #​0b7357c Added table module to display table format reports
  • #​0b7357c Added table display for security report
  • #​0b7357c Added table display of exceptions from .nsprc file
  • #​39 Cleaned up test cases structure to be more straight forward and easier to maintain
Breaking changes
  • #e08a436 Renamed --ignore -i flag to --exclude -x for better clarity
  • #​0b7357c Removed --display-full flag that was used to ignore the maximum display limit
  • #​0b7357c Removed --display-notes flag that was used for displaying exception notes
  • #​0b7357c Renamed ignore field to active in .nsprc file for better clarity
  • #​0b7357c Renamed reason field to notes in .nsprc file for better clarity
Others
Closed issues
  • #​20 Provide more output when parsing exceptions file
  • #​27 Hide excepted vulnerabilities from output
  • #​28 Missing [ in truncation message


Configuration

📅 Schedule: Branch creation - "on the 1-7 day on Sunday" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot added the dependencies Pull requests that update a dependency file label Apr 6, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants