Skip to content

chore(deps): update dependency @types/node to v20.9.5#5

Open
renovate[bot] wants to merge 1 commit intomainfrom
renovate/patch-patch-and-minor-dev-dependencies
Open

chore(deps): update dependency @types/node to v20.9.5#5
renovate[bot] wants to merge 1 commit intomainfrom
renovate/patch-patch-and-minor-dev-dependencies

Conversation

@renovate
Copy link
Copy Markdown
Contributor

@renovate renovate Bot commented Dec 11, 2023

This PR contains the following updates:

Package Change Age Confidence
@types/node (source) 20.9.020.9.5 age confidence

Configuration

📅 Schedule: Branch creation - Between 12:00 AM and 03:59 AM, only on Monday ( * 0-3 * * 1 ) (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate Bot requested a review from sullivanpj as a code owner December 11, 2023 01:43
@renovate renovate Bot changed the title chore(deps): update dependency @types/node to v20.9.5 chore(deps): update patch & minor dev dependencies (patch) Jan 8, 2024
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch from 1a4be30 to 3215acf Compare January 8, 2024 02:41
@renovate renovate Bot changed the title chore(deps): update patch & minor dev dependencies (patch) chore(deps): update dependency @types/node to v20.9.5 Feb 12, 2024
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch from 3215acf to b10d310 Compare February 12, 2024 02:23
stormie-bot
stormie-bot previously approved these changes Feb 12, 2024
@stormie-bot stormie-bot enabled auto-merge (squash) February 12, 2024 02:24
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch from b10d310 to 74262af Compare February 19, 2024 02:09
stormie-bot
stormie-bot previously approved these changes Feb 19, 2024
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch from 74262af to eee4d26 Compare August 11, 2025 00:50
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch from eee4d26 to 90f81c9 Compare December 29, 2025 00:45
@renovate renovate Bot requested a review from a team December 29, 2025 00:45
@socket-security
Copy link
Copy Markdown

socket-security Bot commented Dec 29, 2025

Warning

Review the following alerts detected in dependencies.

According to your organization's Security Policy, it is recommended to resolve "Warn" alerts. Learn more about Socket for GitHub.

Action Severity Alert  (click "▶" to expand/collapse)
Warn High
Obfuscated code: npm entities is 91.0% likely obfuscated

Confidence: 0.91

Location: Package overview

From: pnpm-lock.yamlnpm/entities@4.5.0

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/entities@4.5.0. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

Warn High
Obfuscated code: npm entities is 91.0% likely obfuscated

Confidence: 0.91

Location: Package overview

From: pnpm-lock.yamlnpm/entities@6.0.1

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/entities@6.0.1. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

Warn High
Obfuscated code: npm markdown-it is 91.0% likely obfuscated

Confidence: 0.91

Location: Package overview

From: pnpm-lock.yamlnpm/markdown-it@14.1.0

ℹ Read more on: This package | This alert | What is obfuscated code?

Next steps: Take a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support@socket.dev.

Suggestion: Packages should not obfuscate their code. Consider not using packages with obfuscated code.

Mark the package as acceptable risk. To ignore this alert only in this pull request, reply with the comment @SocketSecurity ignore npm/markdown-it@14.1.0. You can also ignore all packages with @SocketSecurity ignore-all. To ignore an alert for all future pull requests, use Socket's Dashboard to change the triage state of this alert.

View full report

@deepsource-io
Copy link
Copy Markdown

deepsource-io Bot commented Dec 29, 2025

DeepSource Code Review

We reviewed changes in fb59a67...f50a52f on this pull request. Below is the summary for the review, and you can see the individual issues we found as inline review comments.

See full review on DeepSource ↗

PR Report Card

Overall Grade   Security  

Reliability  

Complexity  

Hygiene  

Code Review Summary

Analyzer Status Updated (UTC) Details
JavaScript May 4, 2026 1:35a.m. Review ↗
Shell May 4, 2026 1:35a.m. Review ↗

Important

AI Review is run only on demand for your team. We're only showing results of static analysis review right now. To trigger AI Review, comment @deepsourcebot review on this thread.

@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch 2 times, most recently from 942834a to 47798c4 Compare January 12, 2026 00:41
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch from 47798c4 to d6214c3 Compare January 26, 2026 02:51
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch 2 times, most recently from 7f2396e to 8ffb244 Compare February 16, 2026 00:45
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch from 8ffb244 to fab63e9 Compare February 23, 2026 01:18
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch from fab63e9 to 1405c19 Compare March 9, 2026 01:19
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch from 1405c19 to fb78b77 Compare March 16, 2026 02:17
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch 2 times, most recently from 1b0b6e7 to e2d8580 Compare April 13, 2026 00:46
@renovate renovate Bot force-pushed the renovate/patch-patch-and-minor-dev-dependencies branch from e2d8580 to f50a52f Compare May 4, 2026 01:35
@socket-security
Copy link
Copy Markdown

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Addednode-fetch@​3.3.26710010085100
Addedclsx@​2.1.11001009480100
Addedchokidar@​3.6.09810010081100
Addedchalk@​5.6.210010010082100
Addeddefu@​6.1.41008510088100
Addedcommander@​11.1.09810010085100
Addedzod@​3.25.769810010096100

View full report

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant