7 Commits

Author SHA1 Message Date
CrazyMax dd8b913e80 Merge pull request #101 from crazy-max/yarn-update
update yarn to 4.15.0
2026-05-28 18:45:01 +02:00
CrazyMax 168cd6c426 update yarn to 4.15.0
Signed-off-by: CrazyMax <1951866+crazy-max@users.noreply.github.com>
2026-05-28 15:13:46 +02:00
CrazyMax 410c00e878 Merge pull request #100 from docker/dependabot/npm_and_yarn/actions/core-3.0.1
chore(deps): bump @actions/core from 3.0.0 to 3.0.1
2026-05-28 10:22:30 +02:00
CrazyMax 5d29e18d06 Merge pull request #99 from docker/sec-cli/ignore-scripts-fix-20260527-193420
ci: add ignore-scripts to Node package manager config (20260527-193420)
2026-05-28 09:59:38 +02:00
github-actions[bot] 70b1359563 chore: update generated content 2026-05-28 01:58:55 +00:00
dependabot[bot] f0bcefd12e chore(deps): bump @actions/core from 3.0.0 to 3.0.1
Bumps [@actions/core](https://github.com/actions/toolkit/tree/HEAD/packages/core) from 3.0.0 to 3.0.1.
- [Changelog](https://github.com/actions/toolkit/blob/main/packages/core/RELEASES.md)
- [Commits](https://github.com/actions/toolkit/commits/HEAD/packages/core)

---
updated-dependencies:
- dependency-name: "@actions/core"
  dependency-version: 3.0.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
2026-05-28 01:58:09 +00:00
securityeng-bot[bot] 41e3c799a3 ci: enforce ignore-scripts policy for Node package managers 2026-05-27 20:05:06 +00:00
5 changed files with 127 additions and 124 deletions
+8 -4
View File
@@ -1,10 +1,10 @@
# https://yarnpkg.com/configuration/yarnrc # https://yarnpkg.com/configuration/yarnrc
compressionLevel: mixed nodeLinker: node-modules
enableGlobalCache: false
enableHardenedMode: true
logFilters: logFilters:
- code: YN0004
level: discard
- code: YN0013 - code: YN0013
level: discard level: discard
- code: YN0019 - code: YN0019
@@ -14,4 +14,8 @@ logFilters:
- code: YN0086 - code: YN0086
level: discard level: discard
nodeLinker: node-modules compressionLevel: mixed
enableGlobalCache: false
enableHardenedMode: true
enableScripts: false
npmMinimalAgeGate: 2d
Generated Vendored
+111 -112
View File
File diff suppressed because one or more lines are too long
Generated Vendored
+4 -4
View File
File diff suppressed because one or more lines are too long
+2 -2
View File
@@ -21,9 +21,9 @@
], ],
"author": "Docker Inc.", "author": "Docker Inc.",
"license": "Apache-2.0", "license": "Apache-2.0",
"packageManager": "yarn@4.9.2", "packageManager": "yarn@4.15.0",
"dependencies": { "dependencies": {
"@actions/core": "^3.0.0", "@actions/core": "^3.0.1",
"@docker/actions-toolkit": "^0.91.0" "@docker/actions-toolkit": "^0.91.0"
}, },
"devDependencies": { "devDependencies": {
+2 -2
View File
@@ -2,7 +2,7 @@
# Manual changes might be lost - proceed with caution! # Manual changes might be lost - proceed with caution!
__metadata: __metadata:
version: 8 version: 10
cacheKey: 10 cacheKey: 10
"@aashutoshrathi/word-wrap@npm:^1.2.3": "@aashutoshrathi/word-wrap@npm:^1.2.3":
@@ -2814,7 +2814,7 @@ __metadata:
version: 0.0.0-use.local version: 0.0.0-use.local
resolution: "docker-setup-compose@workspace:." resolution: "docker-setup-compose@workspace:."
dependencies: dependencies:
"@actions/core": "npm:^3.0.0" "@actions/core": "npm:^3.0.1"
"@docker/actions-toolkit": "npm:^0.91.0" "@docker/actions-toolkit": "npm:^0.91.0"
"@eslint/js": "npm:^9.39.3" "@eslint/js": "npm:^9.39.3"
"@types/node": "npm:^24.11.0" "@types/node": "npm:^24.11.0"