diff --git a/.snyk b/.snyk new file mode 100644 index 0000000..ad56d3f --- /dev/null +++ b/.snyk @@ -0,0 +1,72 @@ +# Snyk (https://snyk.io) policy file, patches or ignores known vulnerabilities. +version: v1.13.1 +ignore: {} +# patches apply the minimum changes required to fix a vulnerability +patch: + 'npm:hoek:20180212': + - gatsby > webpack > watchpack > chokidar > fsevents > node-pre-gyp > hawk > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-filesystem > chokidar > fsevents > node-pre-gyp > hawk > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby > chokidar > fsevents > node-pre-gyp > hawk > sntp > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby > chokidar > fsevents > node-pre-gyp > hawk > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-filesystem > chokidar > fsevents > node-pre-gyp > hawk > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-wordpress > gatsby-source-filesystem > chokidar > fsevents > node-pre-gyp > hawk > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-filesystem > chokidar > fsevents > node-pre-gyp > hawk > sntp > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-transformer-documentationjs > documentation > chokidar > fsevents > node-pre-gyp > hawk > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-filesystem > babel-cli > chokidar > fsevents > node-pre-gyp > hawk > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-filesystem > chokidar > fsevents > node-pre-gyp > hawk > cryptiles > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-wordpress > gatsby-source-filesystem > babel-cli > chokidar > fsevents > node-pre-gyp > hawk > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-filesystem > babel-cli > chokidar > fsevents > node-pre-gyp > hawk > sntp > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-filesystem > babel-cli > chokidar > fsevents > node-pre-gyp > hawk > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-wordpress > gatsby-source-filesystem > chokidar > fsevents > node-pre-gyp > hawk > sntp > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-transformer-documentationjs > documentation > chokidar > fsevents > node-pre-gyp > hawk > sntp > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-wordpress > gatsby-source-filesystem > chokidar > fsevents > node-pre-gyp > hawk > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby > chokidar > fsevents > node-pre-gyp > hawk > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-plugin-sass > webpack > watchpack > chokidar > fsevents > node-pre-gyp > hawk > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-transformer-documentationjs > documentation > chokidar > fsevents > node-pre-gyp > hawk > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby > chokidar > fsevents > node-pre-gyp > hawk > cryptiles > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-wordpress > gatsby-source-filesystem > babel-cli > chokidar > fsevents > node-pre-gyp > hawk > sntp > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-transformer-documentationjs > documentation > chokidar > fsevents > node-pre-gyp > hawk > cryptiles > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby > webpack > watchpack > chokidar > fsevents > node-pre-gyp > hawk > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-plugin-sass > webpack > watchpack > chokidar > fsevents > node-pre-gyp > hawk > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-filesystem > babel-cli > chokidar > fsevents > node-pre-gyp > hawk > cryptiles > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-wordpress > gatsby-source-filesystem > chokidar > fsevents > node-pre-gyp > hawk > cryptiles > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby > webpack > watchpack > chokidar > fsevents > node-pre-gyp > hawk > sntp > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-plugin-sass > webpack > watchpack > chokidar > fsevents > node-pre-gyp > hawk > sntp > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-wordpress > gatsby-source-filesystem > babel-cli > chokidar > fsevents > node-pre-gyp > hawk > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-source-wordpress > gatsby-source-filesystem > babel-cli > chokidar > fsevents > node-pre-gyp > hawk > cryptiles > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby > webpack > watchpack > chokidar > fsevents > node-pre-gyp > hawk > cryptiles > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby-plugin-sass > webpack > watchpack > chokidar > fsevents > node-pre-gyp > hawk > cryptiles > boom > hoek: + patched: '2018-12-08T04:49:02.575Z' + - gatsby > webpack-validator > joi > hoek: + patched: '2018-12-08T04:49:02.575Z' diff --git a/package.json b/package.json index 17b3d0f..024d4d4 100644 --- a/package.json +++ b/package.json @@ -13,7 +13,7 @@ "eslint-plugin-promise": "^3.6.0", "eslint-plugin-react": "^7.4.0", "eslint-plugin-standard": "^3.0.1", - "gatsby": "^1.9.141", + "gatsby": "^1.9.275", "gatsby-image": "^1.0.30", "gatsby-link": "^1.6.32", "gatsby-module-loader": "^1.0.9", @@ -33,7 +33,7 @@ "gatsby-transformer-documentationjs": "^1.4.8", "gatsby-transformer-sharp": "^1.6.16", "graphql-code-generator": "^0.8.14", - "lodash": "^4.17.4", + "lodash": "^4.17.5", "prismjs": "^1.8.4", "prop-types": "^15.6.0", "react-addons-css-transition-group": "^15.6.2", @@ -41,7 +41,8 @@ "react-google-maps": "^9.2.2", "react-helmet": "^5.2.0", "slash": "^1.0.0", - "styled-components": "^2.2.3" + "styled-components": "^2.2.3", + "snyk": "^1.116.2" }, "keywords": [ "gatsby" @@ -63,7 +64,9 @@ "test:skipsnapshotsande2e": "env MODE=skipsnapshots SKIP=e2e jest", "test:skipe2e": "env SKIP=e2e jest", "graphql": "gql-gen --url http://localhost:8000/___graphql --template typescript --out ./graphql-types.d.ts", - "doc": "node doc" + "doc": "node doc", + "snyk-protect": "snyk protect", + "prepare": "npm run snyk-protect" }, "devDependencies": { "babel-eslint": "^7.2.3", @@ -105,5 +108,6 @@ "js", "jsx" ] - } + }, + "snyk": true }