-
Notifications
You must be signed in to change notification settings - Fork 0
Bump helmet from 7.0.0 to 8.1.0 #58
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
base: repo-sync
Are you sure you want to change the base?
Conversation
Reviewer's Guide by SourceryThis pull request bumps the helmet dependency from version 7.0.0 to 8.1.0. This includes changes such as an increased Strict-Transport-Security max-age, stricter Content-Security-Policy validation, and the dropping of support for Node 16 and 17. No diagrams generated as the changes look simple and do not need a visual representation. File-Level Changes
Tips and commandsInteracting with Sourcery
Customizing Your ExperienceAccess your dashboard to:
Getting Help
|
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
We have skipped reviewing this pull request. It seems to have been created by a bot (hey, dependabot[bot]!). We assume it knows what it's doing!
4f7f4e0
to
5e2c195
Compare
Bumps [helmet](https://github.com/helmetjs/helmet) from 7.0.0 to 8.1.0. - [Changelog](https://github.com/helmetjs/helmet/blob/main/CHANGELOG.md) - [Commits](helmetjs/helmet@v7.0.0...v8.1.0) --- updated-dependencies: - dependency-name: helmet dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <[email protected]>
5e2c195
to
6728623
Compare
Bumps helmet from 7.0.0 to 8.1.0.
Changelog
Sourced from helmet's changelog.
Commits
57e1b39
8.1.0c8efbe3
Update changelog for 8.1.0 release3396804
Add 8.0.0 release date to changelog52dd8eb
Content-Security-Policy: better error when value should be quoted4af4777
Use built-in test runner (instead of Jest)ba10272
Organize importse0f1387
Update devDependencies to latest versions842393c
Check types duringnpm test
, run in parallel77fbe3a
Strict-Transport-Security: fix documentation for default max-age632e629
Update license year for 2025Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase
.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebase
will rebase this PR@dependabot recreate
will recreate this PR, overwriting any edits that have been made to it@dependabot merge
will merge this PR after your CI passes on it@dependabot squash and merge
will squash and merge this PR after your CI passes on it@dependabot cancel merge
will cancel a previously requested merge and block automerging@dependabot reopen
will reopen this PR if it is closed@dependabot close
will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditions
will show all of the ignore conditions of the specified dependency@dependabot ignore this major version
will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor version
will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependency
will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)Summary by Sourcery
Chores: