-
-
Notifications
You must be signed in to change notification settings - Fork 969
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore: version package #693
Conversation
The latest updates on your projects. Learn more about Vercel for Git ↗︎
|
🚨 Potential security issues detected. Learn more about Socket for GitHub ↗︎ To accept the risk, merge this PR and you will not be notified again. Next stepsWhat is an install script?Install scripts are run when the package is installed. The majority of malware in npm is hidden in install scripts. Packages should not be running non-essential scripts during install and there are often solutions to problems people solve with install scripts that can be run at publish time instead. What is network access?This module accesses the network. Packages should remove all network access that isn't functionally unnecessary. Consumers should audit network access to ensure legitimate use. Take a deeper look at the dependencyTake a moment to review the security alert above. Review the linked package source code to understand the potential risk. Ensure the package is not malicious before proceeding. If you're unsure how to proceed, reach out to your security team or ask the Socket team for help at support [AT] socket [DOT] dev. Remove the packageIf you happen to install a dependency that Socket reports as Known Malware you should immediately remove it and select a different dependency. For other alert types, you may may wish to investigate alternative packages or consider if there are other ways to mitigate the specific risk posed by the dependency. Mark a package as acceptable riskTo ignore an alert, reply with a comment starting with
|
New and updated dependency changes detected. Learn more about Socket for GitHub ↗︎
🚮 Removed packages: [email protected] Footnotes |
ae275f2
to
9a89803
Compare
9a89803
to
d4e5d72
Compare
d4e5d72
to
cbe4467
Compare
cbe4467
to
9505c2a
Compare
9505c2a
to
454115d
Compare
This PR was opened by the Changesets release GitHub action. When you're ready to do a release, you can merge this and publish to npm yourself or setup this action to publish automatically. If you're not ready to do a release yet, that's fine, whenever you add more changesets to main, this PR will be updated.
Releases
[email protected]
Patch Changes
#687
a274ab33
Thanks @jeetiss! - Added/*#__PURE__*/
annotatations for better tree-shaking#672
e033f467
Thanks @sambacha! - Turned offesModuleInterop
&allowSyntheticDefaultImports
in tsconfig.#683
fe259a0e
Thanks @jeetiss! - Marked package as side effects freePR-Codex overview
This PR updates the version of the
viem
package to 1.0.3, and includes several patch changes, such as adding annotations for better tree-shaking, turning offesModuleInterop
andallowSyntheticDefaultImports
in tsconfig, and marking the package as side effects free.Detailed summary
/*#__PURE__*/
annotations for better tree-shakingesModuleInterop
andallowSyntheticDefaultImports
in tsconfig