Comparing version 6.0.0 to 7.0.0
{ | ||
"name": "nopt", | ||
"version": "6.0.0", | ||
"version": "7.0.0", | ||
"description": "Option parsing for Node, supporting types, shorthands, etc. Used by npm.", | ||
@@ -8,5 +8,2 @@ "author": "GitHub Inc.", | ||
"scripts": { | ||
"preversion": "npm test", | ||
"postversion": "npm publish", | ||
"prepublishOnly": "git push origin --follow-tags", | ||
"test": "tap", | ||
@@ -29,7 +26,7 @@ "lint": "eslint \"**/*.js\"", | ||
"dependencies": { | ||
"abbrev": "^1.0.0" | ||
"abbrev": "^2.0.0" | ||
}, | ||
"devDependencies": { | ||
"@npmcli/eslint-config": "^3.0.1", | ||
"@npmcli/template-oss": "3.5.0", | ||
"@npmcli/eslint-config": "^4.0.0", | ||
"@npmcli/template-oss": "4.8.0", | ||
"tap": "^16.3.0" | ||
@@ -41,3 +38,7 @@ }, | ||
"branches": 81, | ||
"statements": 87 | ||
"statements": 87, | ||
"nyc-arg": [ | ||
"--exclude", | ||
"tap-snapshots/**" | ||
] | ||
}, | ||
@@ -49,3 +50,3 @@ "files": [ | ||
"engines": { | ||
"node": "^12.13.0 || ^14.15.0 || >=16.0.0" | ||
"node": "^14.17.0 || ^16.13.0 || >=18.0.0" | ||
}, | ||
@@ -55,4 +56,4 @@ "templateOSS": { | ||
"windowsCI": false, | ||
"version": "3.5.0" | ||
"version": "4.8.0" | ||
} | ||
} |
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 1 instance in 1 package
New author
Supply chain riskA new npm collaborator published a version of the package for the first time. New collaborators are usually benign additions to a project, but do indicate a change to the security surface area of a package.
Found 1 instance in 1 package
Environment variable access
Supply chain riskPackage accesses environment variables, which may be a sign of credential stuffing or data theft.
Found 2 instances in 1 package
0
23895
4
+ Addedabbrev@2.0.0(transitive)
- Removedabbrev@1.1.1(transitive)
Updatedabbrev@^2.0.0