New Case Study:See how Anthropic automated 95% of dependency reviews with Socket.Learn More
Socket
Sign inDemoInstall
Socket

@pnpm/tarball-resolver

Package Overview
Dependencies
Maintainers
3
Versions
75
Alerts
File Explorer

Advanced tools

Socket logo

Install Socket

Detect and block malicious and high-risk dependencies

Install

@pnpm/tarball-resolver - npm Package Compare versions

Comparing version 3.0.5 to 4.0.0

6

CHANGELOG.md
# @pnpm/tarball-resolver
## 4.0.0
### Major Changes
- 41d92948b: The direct tarball dependency ID starts with a @ and the tarball extension is not removed.
## 3.0.5

@@ -4,0 +10,0 @@

7

lib/index.js

@@ -8,8 +8,3 @@ "use strict";

return {
id: wantedDependency.pref
.replace(/^.*:\/\/(git@)?/, '')
.replace(/\.tgz$/, ''),
// TODO BREAKING CHANGE: uncomment the following: (or never remove extensions)
// .replace(/\.tar.gz$/, ''),
// .replace(/\.tar$/, ''),
id: `@${wantedDependency.pref.replace(/^.*:\/\/(git@)?/, '')}`,
normalizedPref: wantedDependency.pref,

@@ -16,0 +11,0 @@ resolution: {

{
"name": "@pnpm/tarball-resolver",
"version": "3.0.5",
"version": "4.0.0",
"description": "Resolver for tarball dependencies",

@@ -5,0 +5,0 @@ "main": "lib/index.js",

SocketSocket SOC 2 Logo

Product

  • Package Alerts
  • Integrations
  • Docs
  • Pricing
  • FAQ
  • Roadmap
  • Changelog

Packages

npm

Stay in touch

Get open source security insights delivered straight into your inbox.


  • Terms
  • Privacy
  • Security

Made with ⚡️ by Socket Inc