chore: add dependabot and CODEOWNERS#127
Conversation
Legal RiskThe following dependencies were released under a license that RecommendationWhile merging is not directly blocked, it's best to pause and consider what it means to use this license before continuing. If you are unsure, reach out to your security team or Semgrep admin to address this issue. GPL-2.0 MPL-2.0
|
Removes 10 devDependencies that were either never imported
(@eslint/compat, @eslint/eslintrc, @react-native/{eslint,metro,typescript}-config,
eslint-plugin-{jest,react}, typescript-eslint) or superseded by the
publish.yml + GitHub Releases flow (release-it,
@release-it/conventional-changelog). Also drops the legacy .husky/
scripts (lefthook replaced husky), the dead react/react-in-jsx-scope
eslint rule, and the stale yarn release instructions in CONTRIBUTING.
a06778a to
23dca74
Compare
Nothing from these packages is ever packaged in our sdk or shipped to customers. It is coming from our example app codes transitive deps. |
Linear Link
https://linear.app/atomicbuilt/issue/SDK-525/add-dependabot-and-codeowners-to-react-native-sdk
Type of change
Checklist: