Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add proper dependency resolution for ssri #452

Closed
wants to merge 1 commit into from

Conversation

tmarkley
Copy link
Contributor

@tmarkley tmarkley commented Jun 8, 2021

Signed-off-by: Tommy Markley markleyt@amazon.com

Description

Dependabot bumped the dependency from 6.0.1 to 6.0.2 in #332, but it edited the yarn.lock file directly. This left older versions of the dependency in the lockfile.

TODO: will be submitting similar PRs for other Dependabot changes, testing them all together, and providing the test results.

Issues Resolved

N/A

Check List

  • New functionality includes testing.
    • All tests pass
  • New functionality has been documented.
    • New functionality has javadoc added
  • Commits are signed per the DCO using --signoff

Dependabot bumped the dependency from 6.0.1 to 6.0.2 in opensearch-project#332,
but it edited the yarn.lock file directly. This left older
versions of the dependency in the lockfile.

Signed-off-by: Tommy Markley <markleyt@amazon.com>
@opensearch-ci-bot
Copy link
Collaborator

✅   DCO Check Passed b024464

@tmarkley tmarkley changed the title Add proper resolution for ssri Add proper dependency resolution for ssri Jun 8, 2021
@tmarkley tmarkley closed this Jun 8, 2021
@tmarkley tmarkley deleted the deps-ssri branch June 8, 2021 17:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants