Skip to content

Fix Dependabot dev dependency alerts#67

Merged
kentwynn merged 1 commit into
mainfrom
fix-dependabot-dev-deps
Jun 29, 2026
Merged

Fix Dependabot dev dependency alerts#67
kentwynn merged 1 commit into
mainfrom
fix-dependabot-dev-deps

Conversation

@kentwynn

Copy link
Copy Markdown
Owner

No description provided.

Copilot AI review requested due to automatic review settings June 29, 2026 09:19
@kentwynn kentwynn merged commit d481585 into main Jun 29, 2026
3 checks passed
@kentwynn kentwynn deleted the fix-dependabot-dev-deps branch June 29, 2026 09:21

Copilot AI left a comment

Copy link
Copy Markdown

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Updates Node.js dev tooling dependencies to address Dependabot alerts by bumping tsx (and refreshing the lockfile’s resolved transitive versions).

Changes:

  • Bump tsx from ^4.19.2 to ^4.22.4.
  • Refresh package-lock.json with updated resolved versions (notably esbuild, release-it, undici, vite) consistent with the updated dependency graph.

Reviewed changes

Copilot reviewed 1 out of 2 changed files in this pull request and generated no comments.

File Description
package.json Updates the tsx devDependency version range.
package-lock.json Updates resolved dependency versions to match the new tsx version and current semver ranges.

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants