Skip to content

Conversation

@briantist
Copy link
Collaborator

Resolves #12
Related to #10

This pins the version of surge@0.23.0, which happens to be current version being installed.

It also separately installs colors@1.4.0 to temporarily resolve #12, until one of either the colors package is back under control or surge pins its dependency or both.

I would like to further look into whether there's an even better way to do this. I looked around for a bit, messing with packages-lock.json and npm shrinkwrap but I didn't come up with anything viable (as I'm not well-versed in nodejs at all).

@briantist briantist self-assigned this Jan 9, 2022
@briantist
Copy link
Collaborator Author

@briantist briantist merged commit 66c5223 into ansible-community:main Jan 9, 2022
@briantist briantist deleted the deps/pin-surge-colors branch January 9, 2022 03:54
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

A dependency of the surge package was vandalized

1 participant