Skip to content

migrate to 11ty#3

Draft
cj81499 wants to merge 1 commit intomainfrom
11ty
Draft

migrate to 11ty#3
cj81499 wants to merge 1 commit intomainfrom
11ty

Conversation

@cj81499
Copy link
Owner

@cj81499 cj81499 commented Sep 19, 2022

No description provided.

@cj81499 cj81499 self-assigned this Sep 19, 2022
@socket-security
Copy link

Socket Security Report

Dependency issues detected. If you merge this pull request, you will not be alerted to the instances of these issues again.

📜 New install scripts detected

A dependency change in this PR is introducing new install scripts to your install step.

Package Script field Location
bufferutil@4.0.6 (added) binding.gyp package.json via @11ty/eleventy@1.0.2, browser-sync@2.27.10, socket.io@4.5.2, engine.io@6.2.0, ws@8.2.3
utf-8-validate@5.0.9 (added) binding.gyp package.json via @11ty/eleventy@1.0.2, browser-sync@2.27.10, socket.io@4.5.2, engine.io@6.2.0, ws@8.2.3
bufferutil@4.0.6 (added) install package.json via @11ty/eleventy@1.0.2, browser-sync@2.27.10, socket.io@4.5.2, engine.io@6.2.0, ws@8.2.3
utf-8-validate@5.0.9 (added) install package.json via @11ty/eleventy@1.0.2, browser-sync@2.27.10, socket.io@4.5.2, engine.io@6.2.0, ws@8.2.3
🫣 Native code

Contains native code which could be a vector to obscure malicious code, and generally decrease the likelihood of reproducible or reliable installs.

Package Location
bufferutil@4.0.6 (added) package.json via @11ty/eleventy@1.0.2, browser-sync@2.27.10, socket.io@4.5.2, engine.io@6.2.0, ws@8.2.3
utf-8-validate@5.0.9 (added) package.json via @11ty/eleventy@1.0.2, browser-sync@2.27.10, socket.io@4.5.2, engine.io@6.2.0, ws@8.2.3
Socket.dev scan summary
Issue Status
Did you mean? ✅ no new possible package typos
Install scripts ⚠️ 4 new install scripts detected
Telemetry ✅ no new telemetry
Troll package ✅ no new troll packages
Malware ✅ no new malware
Native code ⚠️ 2 new native modules detected
Bot Commands

To ignore an alert, reply with a comment starting with @SocketSecurity ignore followed by a space separated list of package-name@version specifiers.

  • @SocketSecurity ignore bufferutil@4.0.6
  • @SocketSecurity ignore utf-8-validate@5.0.9

Powered by socket.dev

@cj81499 cj81499 removed their assignment Nov 7, 2022
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant