Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(repo): bump frontend deps #18658

Closed
wants to merge 1 commit into from
Closed

chore(repo): bump frontend deps #18658

wants to merge 1 commit into from

Conversation

dionysuzx
Copy link
Collaborator

@dionysuzx dionysuzx commented Dec 27, 2024

I discovered it's a lot easier for maintainers to just do a pnpm up -r once a week (and let the weekly dependabot PRs be a "reminder"). This should close most if not all dependabot javascript PRs.

This doesn't bump any major versions, so it shouldn't break things but of course it could. So some testing, at least a sanity check would be good.

EDIT: Looks like some failing jobs that I need to address.

@dionysuzx dionysuzx requested review from KorbinianK, bearni95 and davidtaikocha and removed request for davidtaikocha December 27, 2024 02:48
@dionysuzx dionysuzx marked this pull request as draft December 27, 2024 02:50
Copy link

chore(repo): bump frontend deps

Generated at commit: c9de33c0319d2cb91c40fb235f6a4c31a8495628

🚨 Report Summary

Severity Level Results
Contracts Critical
High
Medium
Low
Note
Total
3
3
0
7
41
54
Dependencies Critical
High
Medium
Low
Note
Total
0
0
0
0
0
0

For more details view the full report in OpenZeppelin Code Inspector

@dionysuzx
Copy link
Collaborator Author

i'm going to try this again in a more step-by-step fashion.

@dionysuzx dionysuzx closed this Jan 6, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants