| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
Sorry, something went wrong.
Bumps the npm_and_yarn group with 1 update in the / directory: [js-yaml](https://github.com/nodeca/js-yaml). Updates `js-yaml` from 4.1.0 to 4.1.1 - [Changelog](https://github.com/nodeca/js-yaml/blob/master/CHANGELOG.md) - [Commits](nodeca/js-yaml@4.1.0...4.1.1) --- updated-dependencies: - dependency-name: js-yaml dependency-version: 4.1.1 dependency-type: indirect dependency-group: npm_and_yarn ... Signed-off-by: dependabot[bot] <support@github.com>
|
🔒 Entelligence AI Vulnerability Scanner ✅ No security vulnerabilities found! Your code passed our comprehensive security analysis. |
Sorry, something went wrong.
WalkthroughThis PR restructures the dependency tree in package-lock.json by reclassifying numerous development dependencies from peer dependencies to regular dependencies. The change removes the "peer": true flag from packages like ansi-regex, argparse, cli-highlight, execa, js-yaml, and many others, while adding this flag to @octokit/core. Additionally, js-yaml is upgraded from version 4.1.0 to 4.1.1. This restructuring likely addresses dependency resolution issues or aligns the package configuration with updated requirements, ensuring proper installation and resolution of the dependency tree. Changes
Sequence DiagramThis diagram shows the interactions between components: sequenceDiagram
participant Dev as Developer
participant NPM as NPM Package Manager
participant Lock as package-lock.json
Note over Dev,Lock: Dependency Reclassification Update
Dev->>NPM: Update dependency classifications
activate NPM
NPM->>Lock: Remove "peer: true" from multiple packages
Note right of Lock: Packages like @sindresorhus/is,<br/>ansi-regex, any-promise, etc.<br/>moved from peer to regular dev deps
NPM->>Lock: Add "peer: true" to @octokit/core
Note right of Lock: @octokit/core marked as peer dependency
NPM->>Lock: Update js-yaml: 4.1.0 → 4.1.1
Note right of Lock: Minor patch version bump
NPM-->>Dev: Lockfile updated
deactivate NPM
Note over Dev,Lock: No runtime behavior changes<br/>No component interaction changes<br/>Pure dependency metadata update
▶️ ⚡ AI Code Reviews for VS Code, Cursor, Windsurf Marketplace Extension Gallery Service URL: https://marketplace.visualstudio.com/_apis/public/gallery Marketplace Gallery Item URL: https://marketplace.visualstudio.com/items Entelligence.ai can learn from your feedback. Simply add 👍 / 👎 emojis to teach it your preferences. More shortcuts belowEmoji Descriptions:
Interact with the Bot:
Example: @entelligenceai Can you suggest improvements for this code?
Example: @entelligenceai Do not comment on `save_auth` function !
Also you can trigger various commands with the bot by doing The current supported commands are
More commands to be added soon. |
Sorry, something went wrong.
| Back | FazBrowse Home | New Git URL |
Bumps the npm_and_yarn group with 1 update in the / directory: js-yaml.
Updates js-yaml from 4.1.0 to 4.1.1
ChangelogSourced from js-yaml's changelog.
CommitsYou can trigger a rebase of this PR by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
You can disable automated security fix PRs for this repo from the Security Alerts page.
EntelligenceAI PR Summary
This PR restructures package dependencies in package-lock.json to fix dependency resolution and align with updated package requirements.