Skip to content

Conversation

@petruki
Copy link
Member

@petruki petruki commented Sep 16, 2025

This pull request updates several dependencies and GitHub Actions workflows to use newer versions. The main focus is on keeping the project up-to-date with the latest security patches and features for both runtime and development tools.

Dependency updates:

  • Upgraded several dependencies in package.json, including axios (to 1.12.2), express-rate-limit (to 8.1.0), mongoose (to 8.18.1), and pino (to 9.9.5), as well as devDependencies like eslint (to 9.35.0) and jest (to 30.1.3). [1] [2]

CI/CD workflow updates:

  • Updated all uses of actions/checkout and actions/setup-node in .github/workflows/master.yml, .github/workflows/release.yml, .github/workflows/re-release.yml, and .github/workflows/sonar.yml to use their latest major versions (v5), ensuring improved performance and support. [1] [2] [3] [4] [5] [6] [7]

@petruki petruki added this to the v1.1.0 milestone Sep 16, 2025
@petruki petruki self-assigned this Sep 16, 2025
@petruki petruki added patch Updating dependencies security Vulnerability detected labels Sep 16, 2025
@sonarqubecloud
Copy link

@petruki petruki merged commit 96a419a into master Sep 16, 2025
5 checks passed
@petruki petruki deleted the staging branch September 16, 2025 03:19
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

patch Updating dependencies security Vulnerability detected

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants