Skip to content

Conversation

@MarshallOfSound
Copy link
Member

@MarshallOfSound MarshallOfSound commented Aug 4, 2025

This appears to (a) fix socket dev dependency recognition and (b) make the tests not use deprecated / ancient mocha modules

@socket-security
Copy link

socket-security bot commented Aug 4, 2025

Review the following changes in direct dependencies. Learn more about Socket for GitHub.

Diff Package Supply Chain
Security
Vulnerability Quality Maintenance License
Added@​esbuild/​aix-ppc64@​0.25.81001003692100
Added@​esbuild/​android-arm64@​0.25.81001003692100
Added@​esbuild/​darwin-arm64@​0.25.81001003692100
Added@​esbuild/​darwin-x64@​0.25.81001003692100
Added@​esbuild/​freebsd-arm64@​0.25.81001003692100
Added@​esbuild/​freebsd-x64@​0.25.81001003692100
Added@​esbuild/​linux-arm@​0.25.81001003692100
Added@​esbuild/​linux-arm64@​0.25.81001003692100
Added@​esbuild/​linux-ia32@​0.25.81001003692100
Added@​esbuild/​linux-loong64@​0.25.81001003692100
Added@​esbuild/​linux-mips64el@​0.25.81001003692100
Added@​esbuild/​linux-ppc64@​0.25.81001003692100
Added@​esbuild/​linux-riscv64@​0.25.81001003692100
Added@​esbuild/​linux-s390x@​0.25.81001003692100
Added@​esbuild/​linux-x64@​0.25.81001003692100
Added@​esbuild/​openbsd-arm64@​0.25.81001003692100
Added@​esbuild/​openbsd-x64@​0.25.81001003692100
Added@​esbuild/​sunos-x64@​0.25.81001003692100
Added@​esbuild/​win32-arm64@​0.25.81001003692100
Added@​esbuild/​win32-ia32@​0.25.81001003692100
Added@​esbuild/​win32-x64@​0.25.81001003692100
Added@​esbuild/​netbsd-arm64@​0.25.81001003792100
Added@​esbuild/​netbsd-x64@​0.25.81001003792100
Added@​rollup/​rollup-darwin-arm64@​4.46.21001003799100
Added@​rollup/​rollup-android-arm64@​4.46.21001003799100
Added@​rollup/​rollup-win32-arm64-msvc@​4.46.21001003799100
Added@​rollup/​rollup-freebsd-arm64@​4.46.21001003799100
Added@​rollup/​rollup-linux-arm64-gnu@​4.46.21001003799100
Added@​rollup/​rollup-linux-arm64-musl@​4.46.21001003799100
Added@​rollup/​rollup-android-arm-eabi@​4.46.21001003799100
Added@​rollup/​rollup-linux-arm-gnueabihf@​4.46.21001003799100
Added@​rollup/​rollup-linux-arm-musleabihf@​4.46.21001003799100
See 94 more rows in the dashboard

View full report

@MarshallOfSound MarshallOfSound marked this pull request as ready for review August 4, 2025 03:06
@MarshallOfSound MarshallOfSound requested a review from a team as a code owner August 4, 2025 03:06
@MarshallOfSound MarshallOfSound changed the title build: use yarn@v4 build: use yarn@v4 and migrate to vitest Aug 4, 2025
Copy link
Member

@dsanders11 dsanders11 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

cc @mmaietta as he has an earlier draft PR to migrate to Vitest which was blocked by the Node.js 22 bump. Would be good to make sure the two PRs more or less converged on the same end result.

This would be our first repo to venture off of yarn@v1 to yarn@v4. If that's needed to make the Socket security stuff work, sounds like we'd want to migrate most of our repos. Let's put it on the agenda to discuss at the Ecosystem WG meeting this week.

@MarshallOfSound MarshallOfSound merged commit 2b25b42 into main Aug 18, 2025
6 checks passed
@MarshallOfSound MarshallOfSound deleted the sam/test-yarn4 branch August 18, 2025 19:29
@notion-workspace
Copy link

asar

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants