Skip to content

Conversation

@lenucksi
Copy link
Member

Keeps producing ruby security warnings that seem to be outdated versions https://github.com/InnerSourceCommons/InnerSourcePatterns/security/dependabot/40 for the book scripts.

Keeps producing ruby security warnings that seem to be outdated versions https://github.com/InnerSourceCommons/InnerSourcePatterns/security/dependabot/40 for the book scripts.
@spier
Copy link
Member

spier commented Nov 25, 2025

Hi @lenucksi. Great to see you here again!

Is this the goal of this change to run the dependency checks for the ruby dependencies less frequently, and with that generate fewer alerts? If so, we could even bring this down to monthly, to reduce the alerts even further.

Also we can definitely try if the book generation also works with commonmarker >= 0.23.10, if that fixes the alerts.
I have not touched this script in a long time.

@spier
Copy link
Member

spier commented Nov 25, 2025

Just FYI, I fixed the dependabot alerts related to generate_toc.rb in #879.

Still happy to merge this PR here as well, if it helps to reduce the alerts further.

@lenucksi lenucksi merged commit 9d42aca into main Nov 26, 2025
12 checks passed
@lenucksi lenucksi deleted the lenucksi-patch-1 branch November 26, 2025 13:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants