@codeshift/initializer
Advanced tools
+6
-0
| # @codeshift/initializer | ||
| ## 0.1.3 | ||
| ### Patch Changes | ||
| - 3d14938: Initialiser now uses current @codeshift/util version when publishing pacakges | ||
| ## 0.1.2 | ||
@@ -4,0 +10,0 @@ |
@@ -8,2 +8,3 @@ 'use strict'; | ||
| var recast = require('recast'); | ||
| var package_json = require('@codeshift/utils/package.json'); | ||
@@ -48,3 +49,3 @@ function _interopDefault (e) { return e && e.__esModule ? e : { 'default': e }; } | ||
| dependencies: { | ||
| '@codeshift/utils': '*' | ||
| '@codeshift/utils': "^".concat(package_json.version) | ||
| }, | ||
@@ -51,0 +52,0 @@ devDependencies: { |
@@ -8,2 +8,3 @@ 'use strict'; | ||
| var recast = require('recast'); | ||
| var package_json = require('@codeshift/utils/package.json'); | ||
@@ -48,3 +49,3 @@ function _interopDefault (e) { return e && e.__esModule ? e : { 'default': e }; } | ||
| dependencies: { | ||
| '@codeshift/utils': '*' | ||
| '@codeshift/utils': "^".concat(package_json.version) | ||
| }, | ||
@@ -51,0 +52,0 @@ devDependencies: { |
+2
-1
| { | ||
| "name": "@codeshift/initializer", | ||
| "version": "0.1.2", | ||
| "version": "0.1.3", | ||
| "main": "dist/codeshift-initializer.cjs.js", | ||
@@ -9,2 +9,3 @@ "types": "dist/codeshift-initializer.cjs.d.ts", | ||
| "dependencies": { | ||
| "@codeshift/utils": "*", | ||
| "fs-extra": "^9.1.0", | ||
@@ -11,0 +12,0 @@ "recast": "^0.20.4", |
+2
-1
| import fs from 'fs-extra'; | ||
| import semver from 'semver'; | ||
| import * as recast from 'recast'; | ||
| import { version as utilVersion } from '@codeshift/utils/package.json'; | ||
@@ -17,3 +18,3 @@ export function getPackageJson(packageName: string, version: string = '0.0.0') { | ||
| dependencies: { | ||
| '@codeshift/utils': '*', | ||
| '@codeshift/utils': `^${utilVersion}`, | ||
| }, | ||
@@ -20,0 +21,0 @@ devDependencies: { |
Wildcard dependency
QualityPackage has a dependency with a floating version range. This can cause issues if the dependency publishes a new major version.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
Major refactor
Supply chain riskPackage has recently undergone a major refactor. It may be unstable or indicate significant internal changes. Use caution when updating to versions that include significant changes.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
Filesystem access
Supply chain riskAccesses the file system, and could potentially read sensitive data.
Found 1 instance in 1 package
14089
3.03%337
0.9%0
-100%5
25%1
Infinity%+ Added
+ Added