Skip to content

Update dependency tar-stream to v3.1.8#430

Open
renovate[bot] wants to merge 1 commit intomasterfrom
renovate/tar-stream-3.x
Open

Update dependency tar-stream to v3.1.8#430
renovate[bot] wants to merge 1 commit intomasterfrom
renovate/tar-stream-3.x

Conversation

@renovate
Copy link
Contributor

@renovate renovate bot commented Mar 1, 2026

This PR contains the following updates:

Package Change Age Confidence
tar-stream 3.1.73.1.8 age confidence

Release Notes

mafintosh/tar-stream (tar-stream)

v3.1.8

Compare Source


Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Never, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot added the dependencies label Mar 1, 2026
@sonarqubecloud
Copy link

sonarqubecloud bot commented Mar 1, 2026

SonarQube reviewer guide

Review in SonarQube

Summary: Updates tar-stream from 3.1.7 to 3.1.8 and refreshes dependency tree with new transitive dependencies for bare filesystem and stream utilities.

Review Focus: Verify that the new transitive dependencies (bare-fs, bare-os, bare-path, bare-stream, bare-url, teex, text-decoder, events-universal) introduced by tar-stream 3.1.8 are compatible with the project's runtime environment and licensing requirements. Note the removal of queue-tick and refactoring of streamx dependencies away from bare-events as an optional dependency.

Start review at: package.json. This is the primary source of truth for direct dependencies and should be reviewed first to understand the intentional version bump, then cross-reference with package-lock.json to assess the full dependency impact.

💬 Please send your feedback

Quality Gate Passed Quality Gate passed

Issues
0 New issues
0 Accepted issues
0 Dependency risks

Measures
0 Security Hotspots
0.0% Coverage on New Code
0.0% Duplication on New Code

See analysis details on SonarQube Cloud

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants