Skip to content

Supply-chain hardening sweep#665

Merged
murderteeth merged 1 commit into
masterfrom
supply-chain-hardening
May 14, 2026
Merged

Supply-chain hardening sweep#665
murderteeth merged 1 commit into
masterfrom
supply-chain-hardening

Conversation

@murderteeth
Copy link
Copy Markdown
Contributor

Automated hardening pass:

  • PM configs touched: .bunfig.toml, .npmrc
  • deps pinned from lockfile: 21
  • deps range-stripped (fallback): 0
  • workflow install lines frozen: 2
  • workflow actions pinned to SHA: 4

@vercel
Copy link
Copy Markdown

vercel Bot commented May 13, 2026

The latest updates on your projects. Learn more about Vercel for GitHub.

Project Deployment Actions Updated (UTC)
yearn-docs Ready Ready Preview, Comment May 14, 2026 6:16am

Request Review

@socket-security
Copy link
Copy Markdown

socket-security Bot commented May 13, 2026

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Updatednpm/​@​docusaurus/​faster@​3.10.1 ⏵ 3.9.299 +11006799100

View full report

2 PM config(s); pin 21 deps; freeze 2 install lines; pin 4 actions; vercel.json 1+0

🛡️ Automated
@murderteeth murderteeth force-pushed the supply-chain-hardening branch from 02cd88a to 123c6a0 Compare May 14, 2026 06:15
@murderteeth murderteeth merged commit f71a351 into master May 14, 2026
7 checks passed
@murderteeth murderteeth deleted the supply-chain-hardening branch May 14, 2026 08:09
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant